CVE-2024-39607
EUVD-2024-3832801.08.2024, 02:15
OS command injection vulnerability exists in ELECOM wireless LAN routers. A specially crafted request may be sent to the affected product by a logged-in user with an administrative privilege to execute an arbitrary OS command.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| elecom | wrc-x6000xs-g_firmware | 𝑥 ≤ 1.11 | ADP |
| elecom | wrc-x1500gs-b_firmware | 𝑥 ≤ 1.11 | ADP |
| elecom | wrc-x1500gsa-b_firmware | 𝑥 ≤ 1.11 | ADP |