CVE-2021-20739

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
07/07/2021
Last modified:
10/07/2021

Description

WRC-300FEBK, WRC-F300NF, WRC-733FEBK, WRH-300RD, WRH-300BK, WRH-300SV, WRH-300WH, WRH-H300WH, WRH-H300BK, WRH-300BK-S, and WRH-300WH-S all versions allows an unauthenticated network-adjacent attacker to execute an arbitrary OS command via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:elecom:wrc-300febk_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:elecom:wrc-300febk:-:*:*:*:*:*:*:*
cpe:2.3:o:elecom:wrc-f300nf_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:elecom:wrc-f300nf:-:*:*:*:*:*:*:*
cpe:2.3:o:elecom:wrc-733febk_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:elecom:wrc-733febk:-:*:*:*:*:*:*:*
cpe:2.3:o:elecom:wrh-300rd_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:elecom:wrh-300rd:-:*:*:*:*:*:*:*
cpe:2.3:o:elecom:wrh-300bk_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:elecom:wrh-300bk:-:*:*:*:*:*:*:*
cpe:2.3:o:elecom:wrh-300sv_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:elecom:wrh-300sv:-:*:*:*:*:*:*:*
cpe:2.3:o:elecom:wrh-300wh_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:elecom:wrh-300wh:-:*:*:*:*:*:*:*
cpe:2.3:o:elecom:wrh-h300wh_firmware:*:*:*:*:*:*:*:*