CVE-2026-40621: Elecom Co.,ltd Wrc-BE65QSD-B
Critical severity, CVSS 9.3. EPSS: 0.7% chance of exploitation in the next 30 days.
ELECOM wireless LAN access point devices do not require authentication to access some specific URLs. The affected product may be operated without authentication.
Affected products
- Elecom Co.,ltd Wrc-BE65QSD-B: up to and including v1.1.0
- Elecom Co.,ltd Wrc-BE72XSD-B: up to and including v1.1.1
- Elecom Co.,ltd Wrc-BE72XSD-BA: up to and including v1.1.1
- Elecom Co.,ltd Wrc-w702-B: up to and including v1.1.0
Published 2026-05-13. Last modified 2026-06-17.