cbcvebase.

Elecom Co Ltd Wab-I1750-Ps vulnerabilities

4 known vulnerabilities affecting elecom_co_ltd/wab-i1750-ps.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM1LOW1

Vulnerabilities

Page 1 of 1
CVE-2023-40072P2HIGHCVSS 8.8vv1.5.10 and earlier2023-08-18
CVE-2023-40072 [HIGH] CWE-78 CVE-2023-40072: OS command injection vulnerability in ELECOM wireless LAN access point devices allows an authenticat OS command injection vulnerability in ELECOM wireless LAN access point devices allows an authenticated user to execute an arbitrary OS command by sending a specially crafted request.
nvd
CVE-2024-43689P3CRITICALCVSS 9.8vv1.5.10 and earlier2024-10-21
CVE-2024-43689 [CRITICAL] CWE-121 CVE-2024-43689: Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a s Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a specially crafted HTTP request, arbitrary code may be executed.
nvd
CVE-2024-42412P4MEDIUMCVSS 6.1vv1.5.10 and earlier2024-08-30
CVE-2024-42412 [MEDIUM] CWE-79 CVE-2024-42412: Cross-site scripting vulnerability exists in ELECOM wireless access points due to improper processin Cross-site scripting vulnerability exists in ELECOM wireless access points due to improper processing of input values in menu.cgi. If a user views a malicious web page while logged in to the product, an arbitrary script may be executed on the user's web browser.
nvd
CVE-2024-39300P4LOWCVSS 3.7vv1.5.10 and earlier2024-08-30
CVE-2024-39300 [LOW] CWE-306 CVE-2024-39300: Missing authentication vulnerability exists in Telnet function of WAB-I1750-PS v1.5.10 and earlier. Missing authentication vulnerability exists in Telnet function of WAB-I1750-PS v1.5.10 and earlier. When Telnet function of the product is enabled, a remote attacker may login to the product without authentication and alter the product's settings.
nvd
Elecom Co Ltd Wab-I1750-Ps vulnerabilities | cvebase