Unrestricted upload of file with dangerous type vulnerability exists in ELECOM wireless LAN routers. A specially crafted file may be uploaded to the affected product by a logged-in user with an administrative privilege, resulting in an arbitrary OS command execution.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_0
|
Mon, 09 Sep 2024 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Elecom wrc-2533gst2 Firmware
|
|
CPEs | cpe:2.3:o:elecom:wrc-2533gst2_firmware:*:*:*:*:*:*:*:* | |
Vendors & Products |
Elecom wrc-2533gst2 Firmware
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-08-01T01:15:56.174Z
Updated: 2024-11-26T08:04:03.424Z
Reserved: 2024-07-26T08:52:16.452Z
Link: CVE-2024-34021
Vulnrichment
Updated: 2024-08-01T13:32:37.592Z
NVD
Status : Awaiting Analysis
Published: 2024-08-01T02:15:01.873
Modified: 2024-11-26T09:15:06.077
Link: CVE-2024-34021
Redhat
No data.