Open redirect vulnerability in ELECOM wireless LAN routers and ELECOM wireless LAN repeaters allows a remote unauthenticated attacker to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL. Affected products and versions are as follows: WRH-300WH-H v2.12 and earlier, WTC-300HWH v1.09 and earlier, WTC-C1167GC-B v1.17 and earlier, and WTC-C1167GC-W v1.17 and earlier.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN05223215/ | Third Party Advisory |
https://www.elecom.co.jp/news/security/20230711-01/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: jpcert
Published: 2023-07-13T01:20:06.348Z
Updated: 2023-07-13T01:20:06.348Z
Reserved: 2023-07-07T08:46:11.998Z
Link: CVE-2023-37561
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-07-13T02:15:09.467
Modified: 2023-07-25T14:11:24.400
Link: CVE-2023-37561
JSON object: View
Redhat Information
No data.
CWE