Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · elecom

elecom

· 7 Critical

Total CVEs

63

Critical

7

Products

256

Search All CVEs →

63

Products (256)

wrc-2533gst2 firmware10 CVEswrc-1167gst210 CVEswrc-1167gst2 firmware10 CVEswrc-2533gs2-b10 CVEswrc-2533gs2-b firmware10 CVEswrc-2533gs2-w10 CVEswrc-2533gs2-w firmware10 CVEswrc-2533gst210 CVEswrc-1750gs firmware7 CVEsedwrc-2533gst27 CVEswrc-2533gsta firmware7 CVEswrc-2533gsta7 CVEswrc-2533gst firmware7 CVEswrc-2533gst2sp firmware7 CVEswrc-2533gst2sp7 CVEswrc-2533gst2-g firmware7 CVEswrc-2533gst2-g7 CVEswrc-2533gst7 CVEsedwrc-2533gst2 firmware7 CVEswrc-1900gst firmware7 CVEswrc-1900gst7 CVEswrc-1750gsv firmware7 CVEswrc-1750gsv7 CVEswrc-1750gs7 CVEswrc-1167gst2h firmware7 CVEswrc-1167gst2h7 CVEswrc-1167gst2a firmware7 CVEswrc-1167gst2a7 CVEswrh-733gbk5 CVEswrc-1167ghbk3-a5 CVEswrh-733gwh5 CVEswrh-733gbk firmware5 CVEswrh-733gwh firmware5 CVEswrc-1167ghbk3-a firmware5 CVEswrc-1167ghbk-s4 CVEswrc-1167ghbk-s firmware4 CVEswrc-1167gebk-s firmware4 CVEswrc-1167gebk-s4 CVEswrc-x1500gsa-b firmware4 CVEswrc-x1500gsa-b4 CVEswrc-x1500gs-b firmware4 CVEswrc-x1500gs-b4 CVEswrc-1167febk-a firmware4 CVEswrc-1167febk-a4 CVEswrc-2533ghbk-i3 CVEswrh-300wh-h firmware3 CVEswrc-1167gs2h-b3 CVEswrc-1467ghbk-a firmware3 CVEswrc-1167febk-s3 CVEswrc-1467ghbk-a3 CVEswrh-300wh-h3 CVEswrc-300febk-s3 CVEswrc-1750ghbk firmware3 CVEswrc-1750ghbk3 CVEswrc-1167gs2h-b firmware3 CVEswrc-f1167acf firmware3 CVEswrc-f1167acf3 CVEswrc-300febk-s firmware3 CVEswab-i1750-ps firmware3 CVEswab-i1750-ps3 CVEswrc-1167gs2-b firmware3 CVEswrc-2533gs2v-b3 CVEswrc-2533gs2v-b firmware3 CVEswrc-1167gs2-b3 CVEswrc-1167febk-s firmware3 CVEswrc-2533ghbk-i firmware3 CVEswtc-c1167gc-w firmware2 CVEslan-w300n\/p2 CVEslan-w300n\/p firmware2 CVEslan-w300n\/rs2 CVEslan-w300n\/rs firmware2 CVEslan-wh300n\/dgp2 CVEslan-wh300n\/dgp firmware2 CVEswab-s1167-ps2 CVEswab-s1167-ps firmware2 CVEswmc-x1800gst-b2 CVEswmc-x1800gst-b firmware2 CVEswrc-1167ghbk22 CVEswrc-1167ghbk2 firmware2 CVEswrc-1467ghbk-s2 CVEswrc-1467ghbk-s firmware2 CVEswrc-1750ghbk-e2 CVEswrc-1750ghbk-e firmware2 CVEswrc-1750ghbk2-i2 CVEswrc-1750ghbk2-i firmware2 CVEswrc-1750gst22 CVEswrc-1750gst2 firmware2 CVEswrc-1900ghbk-a2 CVEswrc-1900ghbk-a firmware2 CVEswrc-1900ghbk-s2 CVEswrc-1900ghbk-s firmware2 CVEswrc-1900gst22 CVEswrc-1900gst2 firmware2 CVEswrc-300febk2 CVEswrc-300febk-a2 CVEswrc-300febk-a firmware2 CVEswrc-300febk firmware2 CVEswrc-600ghbk-a2 CVEswrc-600ghbk-a firmware2 CVEswrc-733febk2 CVEswrc-733febk2-a2 CVEswrc-733febk2-a firmware2 CVEswrc-733febk firmware2 CVEswrc-f1167acf22 CVEswrc-f1167acf2 firmware2 CVEswrc-f300nf2 CVEswrc-f300nf firmware2 CVEswrc-g01-w2 CVEswrc-g01-w firmware2 CVEswrc-x1800gs-b2 CVEswrc-x1800gs-b firmware2 CVEswrc-x1800gsa-b2 CVEswrc-x1800gsa-b firmware2 CVEswrc-x1800gsh-b2 CVEswrc-x1800gsh-b firmware2 CVEswrc-x3000gs2-b2 CVEswrc-x3000gs2-b firmware2 CVEswrc-x3000gs2-w2 CVEswrc-x3000gs2-w firmware2 CVEswrc-x3000gs2a-b2 CVEswrc-x3000gs2a-b firmware2 CVEswrc-x3200gst3-b2 CVEswrc-x3200gst3-b firmware2 CVEswrc-x6000xs-g2 CVEswrc-x6000xs-g firmware2 CVEswrh-300bk2 CVEswrh-300bk-s2 CVEswrh-300bk-s firmware2 CVEswrh-300bk firmware2 CVEswrh-300rd2 CVEswrh-300rd firmware2 CVEswrh-300sv2 CVEswrh-300sv firmware2 CVEswrh-300wh2 CVEswrh-300wh-s2 CVEswrh-300wh-s firmware2 CVEswrh-300wh firmware2 CVEswrh-h300bk2 CVEswrh-h300bk firmware2 CVEswrh-h300wh2 CVEswrh-h300wh firmware2 CVEswtc-300hwh2 CVEswtc-300hwh firmware2 CVEswtc-c1167gc-b2 CVEswtc-c1167gc-b firmware2 CVEswtc-c1167gc-w2 CVEswrc-300febk-r firmware1 CVEslan-wh300n\/dr1 CVEslan-wh300andgpe firmware1 CVEswrh-300wh3-s firmware1 CVEswrc-300ghbk1 CVEswrc-300ghbk2-i1 CVEswrc-300ghbk2-i firmware1 CVEswrc-300ghbk firmware1 CVEswrh-300wh3 firmware1 CVEswsc-x1800gs-b firmware1 CVEswrh-300bk2-s1 CVEswrh-300bk2-s firmware1 CVEswrh-300bk31 CVEswrh-300bk3-s1 CVEswrc-733ghbk1 CVEswrc-733ghbk-c1 CVEswrc-733ghbk-c firmware1 CVEswrc-733ghbk-i1 CVEswrc-733ghbk-i firmware1 CVEswrc-733ghbk firmware1 CVEslan-wh300andgpe1 CVEswrh-300bk3-s firmware1 CVEswrh-300bk3 firmware1 CVEslan-wh300an\/dgp firmware1 CVEswrh-300yg3-s1 CVEswrh-300dr3-s1 CVEswrh-300dr3-s firmware1 CVEswrh-300lb3-s1 CVEslan-wh300an\/dgp1 CVEslan-w451ngr firmware1 CVEslan-w451ngr1 CVEslan-w301nr firmware1 CVEswrh-300lb3-s firmware1 CVEswrh-300pn3-s1 CVEswrh-300pn3-s firmware1 CVEswrh-300yg3-s firmware1 CVEslan-w300n\/pr51 CVEslan-w300n\/dr firmware1 CVEswrc-x3000gs1 CVEslan-w300n\/dr1 CVEsfile manager1 CVEswrc-1167fsa firmware1 CVEswrc-1167ghbk1 CVEswrc-1167fsa1 CVEswrc-1167fs-w firmware1 CVEslan-w301nr1 CVEslan-w300n\/pr5 firmware1 CVEswrc-1167fs-w1 CVEswrc-1167fs-b firmware1 CVEswrc-1167ghbk firmware1 CVEswrc-1167fs-b1 CVEswmc-m1267gst2-w firmware1 CVEswmc-m1267gst2-w1 CVEswmc-dlgst2-w firmware1 CVEswmc-dlgst2-w1 CVEswmc-c2533gst-w firmware1 CVEswmc-c2533gst-w1 CVEswmc-2hc-w firmware1 CVEswmc-2hc-w1 CVEswab-s733iw2-pd firmware1 CVEswab-s733iw2-pd1 CVEswab-s733iw-pd firmware1 CVEscamera assistant1 CVEswsc-x1800gs-b1 CVEswab-s733iw-pd1 CVEswrc-x3000gs firmware1 CVEswrc-x3000gsa1 CVEswrc-x3000gsa firmware1 CVEswrc-x3000gsn1 CVEswab-s733iw-ac firmware1 CVEswab-s733iw-ac1 CVEswab-s600-ps firmware1 CVEswrc-x3000gsn firmware1 CVEswrh-300wh2-s1 CVEswab-s600-ps1 CVEswab-s300iw2-pd firmware1 CVEswrh-300wh2-s firmware1 CVEswrh-300wh31 CVEswrh-300wh3-s1 CVEswrc-x6000xst-g1 CVEswab-s300iw2-pd1 CVEswrc-x6000xst-g firmware1 CVEswrh-150bk1 CVEswrc-1900gst2sp1 CVEswrc-1900gst2sp firmware1 CVEswab-s300iw-pd firmware1 CVEswab-s300iw-pd1 CVEswab-s300iw-ac firmware1 CVEswrc-2533ghbk2-t1 CVEswrc-2533ghbk2-t firmware1 CVEswab-s300iw-ac1 CVEswab-s300 firmware1 CVEswab-s3001 CVEswab-mat1 CVEsquickfiledealer1 CVEsncc-ewf100rmwh2 firmware1 CVEsncc-ewf100rmwh21 CVEsld-ps\/u1 firmware1 CVEsld-ps\/u11 CVEslan-wh450n\/gp firmware1 CVEslan-wh450n\/gp1 CVEslan-wh300ndgpe firmware1 CVEslan-wh300ndgpe1 CVEslan-wh300n\/re firmware1 CVEslan-wh300n\/re1 CVEslan-wh300n\/dr firmware1 CVEswrh-150bk firmware1 CVEswrh-150wh1 CVEswrh-150wh firmware1 CVEswrc-300febk-r1 CVEs

Recent Vulnerabilities

View all 63
CVE-2026-24465

Stack-based buffer overflow vulnerability exists in ELECOM wireless LAN access point devices. A crafted packet may lead to arbitrary code execution.

CVE-2026-24449

For WRC-X1500GS-B and WRC-X1500GSA-B, the initial passwords can be calculated easily from the system information.

CVE-2026-22550HIGH 8.8

OS command injection vulnerability exists in ELECOM wireless LAN products. A crafted request from a logged-in user may lead to an arbitrary OS command execution.

CVE-2024-43689CRITICAL 9.8

Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a specially crafted HTTP request, arbitrary code may be executed.

CVE-2024-42412MEDIUM 6.1

Cross-site scripting vulnerability exists in ELECOM wireless access points due to improper processing of input values in menu.cgi. If a user views a malicious web page while logged in to the product, an arbitrary script may be executed on the user's web browser.

CVE-2024-39300LOW 3.7

Missing authentication vulnerability exists in Telnet function of WAB-I1750-PS v1.5.10 and earlier. When Telnet function of the product is enabled, a remote attacker may login to the product without authentication and alter the product's settings.

CVE-2024-34577MEDIUM 6.1

Cross-site scripting vulnerability exists in WRC-X3000GS2-B, WRC-X3000GS2-W, WRC-X3000GS2A-B and WRC-X3000GST2-B due to improper processing of input values in easysetup.cgi. If a user views a malicious web page while logged in to the product, an arbitrary script may be executed on the user's web browser.

CVE-2024-40883HIGH 8.8

Cross-site request forgery vulnerability exists in ELECOM wireless LAN routers. Viewing a malicious page while logging in to the affected product with an administrative privilege, the user may be directed to perform unintended operations such as changing the login ID, login password, etc.

CVE-2024-23910HIGH 8.8

Cross-site request forgery (CSRF) vulnerability in ELECOM wireless LAN routers and wireless LAN repeater allows a remote unauthenticated attacker to hijack the authentication of administrators and to perform unintended operations to the affected product. Note that WMC-X1800GST-B and WSC-X1800GS-B are also included in e-Mesh Starter Kit "WMC-2LX-B".

CVE-2024-21798MEDIUM 4.8

ELECOM wireless LAN routers contain a cross-site scripting vulnerability. Assume that a malicious administrative user configures the affected product with specially crafted content. When another administrative user logs in and operates the product, an arbitrary script may be executed on the web browser. Note that WMC-X1800GST-B is also included in e-Mesh Starter Kit "WMC-2LX-B".

CVE-2024-22372MEDIUM 6.8

OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to the product.

CVE-2023-49695MEDIUM 6.8

OS command injection vulnerability in WRC-X3000GSN v1.0.2, WRC-X3000GS v1.0.24 and earlier, and WRC-X3000GSA v1.0.24 and earlier allows a network-adjacent attacker with an administrative privilege to execute an arbitrary OS command by sending a specially crafted request to the product.

CVE-2023-43757MEDIUM 6.5

Inadequate encryption strength vulnerability in multiple routers provided by ELECOM CO.,LTD. and LOGITEC CORPORATION allows a network-adjacent unauthenticated attacker to guess the encryption key used for wireless LAN communication and intercept the communication. As for the affected products/versions, see the information provided by the vendor under [References] section.

CVE-2023-43752HIGH 8.0

OS command injection vulnerability in WRC-X3000GS2-W v1.05 and earlier, WRC-X3000GS2-B v1.05 and earlier, and WRC-X3000GS2A-B v1.05 and earlier allows a network-adjacent authenticated user to execute an arbitrary OS command by sending a specially crafted request.

CVE-2023-40072HIGH 8.8

OS command injection vulnerability in ELECOM wireless LAN access point devices allows an authenticated user to execute an arbitrary OS command by sending a specially crafted request.

CVE-2023-40069CRITICAL 9.8

OS command injection vulnerability in ELECOM wireless LAN routers allows an attacker who can access the product to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WRC-F1167ACF all versions, WRC-1750GHBK all versions, WRC-1167GHBK2 all versions, WRC-1750GHBK2-I all versions, and WRC-1750GHBK-E all versions.

CVE-2023-39944HIGH 8.8

OS command injection vulnerability in WRC-F1167ACF all versions, and WRC-1750GHBK all versions allows an attacker who can access the product to execute an arbitrary OS command by sending a specially crafted request.

CVE-2023-39455HIGH 8.8

OS command injection vulnerability in ELECOM wireless LAN routers allows an authenticated user to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WRC-600GHBK-A all versions, WRC-1467GHBK-A all versions, WRC-1900GHBK-A all versions, WRC-733FEBK2-A all versions, WRC-F1167ACF2 all versions, WRC-1467GHBK-S all versions, and WRC-1900GHBK-S all versions.

CVE-2023-39454CRITICAL 9.8

Buffer overflow vulnerability exists in ELECOM wireless LAN routers, which may allow an unauthenticated attacker to execute arbitrary code.

CVE-2023-39445HIGH 8.8

Hidden functionality vulnerability in LAN-WH300N/RE all versions provided by LOGITEC CORPORATION allows an unauthenticated attacker to execute arbitrary code by sending a specially crafted file to the product's certain management console.

CVE-2023-38576HIGH 8.0

Hidden functionality vulnerability in LAN-WH300N/RE all versions provided by LOGITEC CORPORATION allows an authenticated user to execute arbitrary OS commands on a certain management console.

CVE-2023-38132HIGH 8.8

LAN-W451NGR all versions provided by LOGITEC CORPORATION contains an improper access control vulnerability, which allows an unauthenticated attacker to log in to telnet service.

CVE-2023-35991CRITICAL 9.8

Hidden functionality vulnerability in LOGITEC wireless LAN routers allows an unauthenticated attacker to log in to the product's certain management console and execute arbitrary OS commands. Affected products and versions are as follows: LAN-W300N/DR all versions, LAN-WH300N/DR all versions, LAN-W300N/P all versions, LAN-WH450N/GP all versions, LAN-WH300AN/DGP all versions, LAN-WH300N/DGP all versions, and LAN-WH300ANDGPE all versions.

CVE-2023-32626CRITICAL 9.8

Hidden functionality vulnerability in LAN-W300N/RS all versions, and LAN-W300N/PR5 all versions allows an unauthenticated attacker to log in to the product's certain management console and execute arbitrary OS commands.

CVE-2023-37565HIGH 8.0

Code injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent authenticated attacker to execute arbitrary code by sending a specially crafted request. Affected products and versions are as follows: WRC-1167GHBK-S v1.03 and earlier, WRC-1167GEBK-S v1.03 and earlier, WRC-1167FEBK-S v1.04 and earlier, WRC-1167GHBK3-A v1.24 and earlier, and WRC-1167FEBK-A v1.18 and earlier.