OS Command Injection in ELECOM Wireless LAN Access Point Devices
CVE-2023-40072
8.8HIGH
What is CVE-2023-40072?
The OS command injection vulnerability in ELECOM wireless LAN access point devices permits an authenticated user to execute arbitrary operating system commands. By sending a specifically crafted request, the attacker can manipulate the device's functionality, potentially leading to unauthorized access or control over the affected device. This flaw highlights significant security risks for network environments relying on ELECOM's wireless solutions.
Affected Version(s)
WAB-I1750-PS v1.5.10 and earlier
WAB-M1775-PS v1.1.21 and earlier
WAB-M2133 v1.3.22 and earlier