CVE-2024-34021: Elecom Wrc-2533gs2-B Firmware
Medium severity, CVSS 6.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Unrestricted upload of file with dangerous type vulnerability exists in ELECOM wireless LAN routers. A specially crafted file may be uploaded to the affected product by a logged-in user with an administrative privilege, resulting in an arbitrary OS command execution.
Affected products
- Elecom Wrc-2533gs2-B Firmware: up to and including 1.68
- Elecom Wrc-2533gs2-W Firmware: up to and including 1.68
- Elecom Wrc-2533gs2v-B Firmware: up to and including 1.68
- Elecom Wrc-2533gst2 Firmware: up to and including 1.30
- Elecom Co.,ltd Wmc-2lx-B: up to and including v1.42
- Elecom Co.,ltd Wmc-x1800gst-B: up to and including v1.42
- Elecom Co.,ltd Wrc-1167gs2-B: up to and including v1.74
- Elecom Co.,ltd Wrc-1167gs2h-B: up to and including v1.74
- Elecom Co.,ltd Wrc-1167gst2: up to and including v1.32
- Elecom Co.,ltd Wrc-2533gs2-B: up to and including v1.68
- Elecom Co.,ltd Wrc-2533gs2-W: up to and including v1.68
- Elecom Co.,ltd Wrc-2533gs2v-B: up to and including v1.68
- Elecom Co.,ltd Wrc-2533gst2: up to and including v1.30
- Elecom Co.,ltd Wrc-g01-W: up to and including v1.26
- Elecom Co.,ltd Wrc-x3200gst3-B: up to and including v1.27
Published 2024-08-01. Last modified 2026-06-17.