CVE-2021-20852

MEDIUM

ELECOM LAN routers <v1.02.9 - Buffer Overflow

Title source: llm
STIX 2.1

Description

Buffer overflow vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-adjacent attacker with an administrator privilege to execute an arbitrary OS command via unspecified vectors.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_misc
https://www.elecom.co.jp/news/security/20211130-01/
Third Party Advisory x_refsource_misc
https://jvn.jp/en/jp/JVN88993473/index.html

Scores

CVSS v3 6.8
EPSS 0.0015
EPSS Percentile 35.3%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-120
Status published
Products (2)
elecom/wrh-733gbk_firmware < 1.02.9
elecom/wrh-733gwh_firmware < 1.02.9
Published Dec 01, 2021
Tracked Since Feb 18, 2026