Medium severity6.1NVD Advisory· Published Jul 13, 2023· Updated Jun 17, 2026
CVE-2023-37561
CVE-2023-37561
Description
Open redirect vulnerability in ELECOM wireless LAN routers and ELECOM wireless LAN repeaters allows a remote unauthenticated attacker to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL. Affected products and versions are as follows: WRH-300WH-H v2.12 and earlier, WTC-300HWH v1.09 and earlier, WTC-C1167GC-B v1.17 and earlier, and WTC-C1167GC-W v1.17 and earlier.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10- cpe:2.3:o:elecom:wrh-300wh-h_firmware:*:*:*:*:*:*:*:*Range: <=2.12
- cpe:2.3:o:elecom:wtc-300hwh_firmware:*:*:*:*:*:*:*:*Range: <=1.09
- cpe:2.3:o:elecom:wtc-c1167gc-b_firmware:*:*:*:*:*:*:*:*Range: <=1.17
- cpe:2.3:o:elecom:wtc-c1167gc-w_firmware:*:*:*:*:*:*:*:*Range: <=1.17
<=v2.12+ 1 more
- (no CPE)range: <=v2.12
- (no CPE)range: v2.12 and earlier
- Range: <=v2.12
- Range: v1.09 and earlier
v1.17 and earlier+ 1 more
- (no CPE)range: v1.17 and earlier
- (no CPE)range: v1.17 and earlier
Patches
Vulnerability mechanics
References
2- jvn.jp/en/jp/JVN05223215/nvdThird Party Advisory
- www.elecom.co.jp/news/security/20230711-01/nvdVendor Advisory
News mentions
0No linked articles in our index yet.