High severity8.0NVD Advisory· Published Nov 16, 2023· Updated Jun 17, 2026
CVE-2023-43752
CVE-2023-43752
Description
OS command injection vulnerability in WRC-X3000GS2-W v1.05 and earlier, WRC-X3000GS2-B v1.05 and earlier, and WRC-X3000GS2A-B v1.05 and earlier allows a network-adjacent authenticated user to execute an arbitrary OS command by sending a specially crafted request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- cpe:2.3:o:elecom:wrc-x3000gs2-b_firmware:*:*:*:*:*:*:*:*Range: <=1.05
- cpe:2.3:o:elecom:wrc-x3000gs2-w_firmware:*:*:*:*:*:*:*:*Range: <=1.05
cpe:2.3:o:elecom:wrc-x3000gs2a-b_firmware:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:elecom:wrc-x3000gs2a-b_firmware:*:*:*:*:*:*:*:*range: <=1.05
- (no CPE)range: v1.05 and earlier
- Range: <=1.05
<=1.05+ 2 more
- (no CPE)range: <=1.05
- (no CPE)range: v1.05 and earlier
- (no CPE)range: v1.05 and earlier
Patches
Vulnerability mechanics
References
2- jvn.jp/en/vu/JVNVU94119876/nvdThird Party Advisory
- www.elecom.co.jp/news/security/20231114-01/nvdVendor Advisory
News mentions
0No linked articles in our index yet.