CVE-2024-36103: Elecom Wrc-x5400gs-B

Medium severity, CVSS 6.8. EPSS: 0.7% chance of exploitation in the next 30 days.

OS command injection vulnerability in WRC-X5400GS-B v1.0.10 and earlier, and WRC-X5400GSA-B v1.0.10 and earlier allows a network-adjacent attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to the product.

Affected products

  • Elecom Wrc-x5400gs-B: up to and including 1.0.10
  • Elecom Wrc-x5400gsa-B: up to and including 1.0.10
  • Elecom Co.,ltd Wrc-x5400gs-B: up to and including v1.0.10
  • Elecom Co.,ltd Wrc-x5400gsa-B: up to and including v1.0.10

Published 2024-06-12. Last modified 2026-06-17.