First published: Wed Dec 01 2021(Updated: )
ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-adjacent attacker with an administrator privilege to execute arbitrary OS commands via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Elecom Wrh-733gbk Firmware | <=1.02.9 | |
Elecom Wrh-733gbk | ||
Elecom Wrh-733gwh Firmware | <=1.02.9 | |
Elecom Wrh-733gwh |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of ELECOM LAN routers is CVE-2021-20854.
The severity of CVE-2021-20854 is medium with a CVSS score of 6.8.
ELECOM LAN routers with WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior are affected by CVE-2021-20854.
A network-adjacent attacker with administrator privilege can execute arbitrary OS commands through unspecified vectors.
The vendor has released updated firmware to address CVE-2021-20854. Please refer to the vendor's security advisory for more information.