Cross-Site Request Forgery in WRC-X1500GS-B and WRC-X1500GSA-B by Elecom
CVE-2026-20704
What is CVE-2026-20704?
A cross-site request forgery vulnerability exists in Elecom's WRC-X1500GS-B and WRC-X1500GSA-B products. This flaw allows an attacker to execute unauthorized commands on behalf of users who are logged into the affected devices. If a victim accesses a malicious webpage while authenticated to the device, the attacker may perform unintended actions without the user's consent. It is crucial for users to be aware of this vulnerability and take necessary precautions to avoid potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
WRC-X1500GS-B v1.12 and earlier versions
WRC-X1500GSA-B v1.12 and earlier versions
References
CVSS V4
CVSS V3.0
Timeline
Vulnerability published
Vulnerability Reserved
