CVE-2024-26258: Elecom Wrc-g01-W Firmware

High severity, CVSS 7.1. EPSS: 0.7% chance of exploitation in the next 30 days.

OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with credentials to execute arbitrary OS commands by sending a specially crafted request to the product.

Affected products

Published 2024-04-04. Last modified 2026-06-17.