First published: Fri Aug 18 2023(Updated: )
OS command injection vulnerability in WRC-F1167ACF all versions, and WRC-1750GHBK all versions allows an attacker who can access the product to execute an arbitrary OS command by sending a specially crafted request.
Credit: vultures@jpcert.or.jp vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Elecom Wrc-f1167acf Firmware | ||
Elecom Wrc-f1167acf | ||
Elecom Wrc-1750ghbk Firmware | ||
Elecom Wrc-1750ghbk |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39944 is an OS command injection vulnerability in WRC-F1167ACF all versions and WRC-1750GHBK all versions.
An attacker who can access the product can exploit CVE-2023-39944 by sending a specially crafted request to execute an arbitrary OS command.
CVE-2023-39944 has a severity score of 8.8 (high).
CVE-2023-39944 affects all versions of WRC-F1167ACF firmware and WRC-1750GHBK firmware.
To fix CVE-2023-39944, it is recommended to apply the security patches provided by Elecom.