CVE-2024-43689

EUVD-2024-40425
Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a specially crafted HTTP request, arbitrary code may be executed.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
jpcertCNA
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 76%
Affected Products (NVD)
VendorProductVersion
elecomwab-i1750-ps_firmware
𝑥
≤ 1.5.10
elecomwab-s1167-ps_firmware
𝑥
≤ 1.5.6
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
elecomwab-s1167-ps_firmware
𝑥
≤ 1.5.6
ADP
elecomwab-i1750-ps_firmware
𝑥
≤ 1.5.10
ADP
elecomwab-i1750-ps
𝑥
≤ 1.5.10
CNA
elecomwab-i1750-ps
𝑥
≤ 2.1.4
CNA
elecomwab-i1750-ps
𝑥
≤ 1.5.6
CNA
elecomwab-i1750-ps
𝑥
≤ 1.3.2
CNA