OS command injection vulnerability in ELECOM network devices allows an authenticated user to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WAB-S600-PS all versions, WAB-S300 all versions, WAB-M1775-PS v1.1.21 and earlier, WAB-S1775 v1.1.9 and earlier, WAB-S1167 v1.0.7 and earlier, and WAB-M2133 v1.3.22 and earlier.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: jpcert

Published: 2023-08-18T09:45:31.201Z

Updated: 2024-02-28T23:11:06.830Z

Reserved: 2023-08-09T11:54:59.361Z


Link: CVE-2023-40072

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-08-18T10:15:12.847

Modified: 2024-02-28T23:15:08.150


Link: CVE-2023-40072

JSON object: View

cve-icon Redhat Information

No data.

CWE