CNNVD-202507-2861 Information

CNNVD ID

CNNVD-202507-2861

CVE-2025-53472

  • CNNVD Published: 2025-07-22

Description (Chinese)

ELECOM WRC-BE36QS-B和ELECOM WRC-W701-B都是日本ELECOM公司的一款无线路由器。 ELECOM WRC-BE36QS-B和ELECOM WRC-W701-B存在操作系统命令注入漏洞,该漏洞源于WebGUI中OS命令注入,可能导致执行任意OS命令。

Description (English)

ELECOM WRC-BE36QS-B and ELECOM WRC-W701-B are all wireless routers of the Japanese company ELECOM. ELECOM WRC-BE36QS-B and ELECOM WRC-W701-B have an operational system command that has a loophole that originates from an OS-in-WebGUI command, which may result in the execution of an arbitrary OS order.

Hazard Level

Medium

Vulnerability Type

操作系统命令注入

Affected Vendor

ELECOM

Published

2025-07-22

Last Modified

2026-02-24

References

https://www.elecom.co.jp/news/security/20250722-01/ https://jvn.jp/en/vu/JVNVU91615135/ https://nvd.nist.gov/vuln/detail/CVE-2025-53472 https://access.redhat.com/security/cve/cve-2025-53472

Patch

https://www.elecom.co.jp/news/security/20250722-01/

Share on: