CVE-2025-53472: Elecom Co.,ltd Wrc-BE36QS-B
High severity, CVSS 7.2. EPSS: 1.1% chance of exploitation in the next 30 days.
WRC-BE36QS-B and WRC-W701-B contain an improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in WebGUI. If exploited, an arbitrary OS command may be executed by a remote attacker who can log in to WebGUI.
Affected products
- Elecom Co.,ltd Wrc-BE36QS-B: up to and including v1.1.3
- Elecom Co.,ltd Wrc-w701-B: up to and including v1.1.3
Published 2025-07-22. Last modified 2026-06-17.