Cross-site request forgery (CSRF) vulnerability in ELECOM wireless LAN routers and wireless LAN repeater allows a remote unauthenticated attacker to hijack the authentication of administrators and to perform unintended operations to the affected product. Note that WMC-X1800GST-B and WSC-X1800GS-B are also included in e-Mesh Starter Kit "WMC-2LX-B".
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 09:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Elecom
Elecom wmc-x1800gst-b Elecom wrc-1167gs2-b Elecom wrc-1167gs2h-b Elecom wrc-2533gs2-b Elecom wrc-2533gs2-w Elecom wrc-2533gs2v-b Elecom wrc-g01-w Firmware Elecom wrc-x3200gst3-b Firmware Elecom wsc-x1800gs-b |
|
CPEs | cpe:2.3:a:elecom:wmc-x1800gst-b:*:*:*:*:*:*:*:* cpe:2.3:a:elecom:wrc-2533gs2v-b:*:*:*:*:*:*:*:* cpe:2.3:a:elecom:wsc-x1800gs-b:*:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-1167gs2-b:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-1167gs2h-b:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-2533gs2-b:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-2533gs2-w:-:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-g01-w_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-x3200gst3-b_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Elecom
Elecom wmc-x1800gst-b Elecom wrc-1167gs2-b Elecom wrc-1167gs2h-b Elecom wrc-2533gs2-b Elecom wrc-2533gs2-w Elecom wrc-2533gs2v-b Elecom wrc-g01-w Firmware Elecom wrc-x3200gst3-b Firmware Elecom wsc-x1800gs-b |
|
Metrics |
ssvc
|
Tue, 26 Nov 2024 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-352 | |
Metrics |
cvssV3_0
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-02-28T23:07:02.324Z
Updated: 2024-11-26T08:07:41.689Z
Reserved: 2024-02-15T01:25:06.163Z
Link: CVE-2024-23910
Vulnrichment
Updated: 2024-08-01T23:13:08.529Z
NVD
Status : Awaiting Analysis
Published: 2024-02-28T23:15:09.557
Modified: 2024-11-26T09:15:05.877
Link: CVE-2024-23910
Redhat
No data.