ELECOM wireless LAN routers are vulnerable to sensitive information exposure, which allows a network-adjacent unauthorized attacker to obtain sensitive information
Published Jul 13, 2023
6.5
MEDIUMCVSS 3.1
EPSS 0.34%
Description
ELECOM wireless LAN routers are vulnerable to sensitive information exposure, which allows a network-adjacent unauthorized attacker to obtain sensitive information. Affected products and versions are as follows: WRC-1167GHBK-S v1.03 and earlier, WRC-1167GEBK-S v1.03 and earlier, WRC-1167FEBK-S v1.04 and earlier, WRC-1167GHBK3-A v1.24 and earlier, WRC-1167FEBK-A v1.18 and earlier, WRC-F1167ACF2 all versions, WRC-600GHBK-A all versions, WRC-733FEBK2-A all versions, WRC-1467GHBK-A all versions, WRC-1467GHBK-S all versions, WRC-1900GHBK-A all versions, and WRC-1900GHBK-S all versions.
Affected products
-
- Version v1.18 and earlierStatusaffectedConstraints-
- Version
-
- Version v1.04 and earlierStatusaffectedConstraints-
- Version
-
- Version v1.03 and earlierStatusaffectedConstraints-
- Version
-
- Version v1.03 and earlierStatusaffectedConstraints-
- Version
-
- Version v1.24 and earlierStatusaffectedConstraints-
- Version
-
- Version all versionsStatusaffectedConstraints-
- Version
-
- Version all versionsStatusaffectedConstraints-
- Version
-
- Version all versionsStatusaffectedConstraints-
- Version
-
- Version all versionsStatusaffectedConstraints-
- Version
-
- Version all versionsStatusaffectedConstraints-
- Version
-
- Version all versionsStatusaffectedConstraints-
- Version
-
- Version all versionsStatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Elecom Co.,ltd. | Wrc-1167febk-A | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-1167febk-S | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-1167gebk-S | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-1167ghbk-S | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-1167ghbk3-A | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-1467ghbk-A | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-1467ghbk-S | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-1900ghbk-A | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-1900ghbk-S | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-600ghbk-A | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-733febk2-A | n/a |
| ||||||
| Elecom Co.,ltd. | Wrc-F1167acf2 | n/a |
|
Configuration 1
- ≤ 1.03
Running on/with
- n/a
Configuration 2
- ≤ 1.03
Running on/with
- n/a
Configuration 3
- ≤ 1.04
Running on/with
- n/a
Configuration 4
- ≤ 1.24
Running on/with
- n/a
Configuration 5
- ≤ 1.18
Running on/with
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (4)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-41449 Advisory
- https://jvn.jp/en/jp/JVN05223215/ Third Party Advisory
- https://www.elecom.co.jp/news/security/20230711-01/ Vendor Advisory
- https://www.elecom.co.jp/news/security/20230810-01/
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-41449 | Advisory | |
| https://jvn.jp/en/jp/JVN05223215/ | Third Party Advisory | |
| https://www.elecom.co.jp/news/security/20230711-01/ | Vendor Advisory | |
| https://www.elecom.co.jp/news/security/20230810-01/ |
Change history (0)
No recorded changes yet.