Medium severity6.8NVD Advisory· Published Jan 24, 2024· Updated Jun 17, 2026
CVE-2024-22372
CVE-2024-22372
Description
OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to the product.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- cpe:2.3:o:elecom:wrc-x1800gs-b_firmware:*:*:*:*:*:*:*:*Range: <1.18
- cpe:2.3:o:elecom:wrc-x1800gsa-b_firmware:*:*:*:*:*:*:*:*Range: <1.18
- cpe:2.3:o:elecom:wrc-x1800gsh-b_firmware:*:*:*:*:*:*:*:*Range: <1.18
- cpe:2.3:o:elecom:wrc-x6000xs-g_firmware:1.09:*:*:*:*:*:*:*
- cpe:2.3:o:elecom:wrc-x6000xst-g_firmware:*:*:*:*:*:*:*:*Range: <1.14
- Range: v1.13 and earlier
Patches
Vulnerability mechanics
References
2- jvn.jp/en/vu/JVNVU90908488/nvdThird Party Advisory
- www.elecom.co.jp/news/security/20240123-01/nvdVendor Advisory
News mentions
0No linked articles in our index yet.