CVE Tools

Elecom-co-ltd

56 CVEs tracked since 2021. Since Feb 2021, none of them reached CISA KEV.

Elecom-co-ltd CVEs per month

Feb 2021 to May 2026. Point at a month, or focus the strip and use the arrow keys.
Elecom-co-ltd CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2021-0290
2021-03null or fewer
2021-04null or fewer
2021-05null or fewer
2021-06null or fewer
2021-0720
2021-08null or fewer
2021-09null or fewer
2021-10null or fewer
2021-11null or fewer
2021-12130
2022-01null or fewer
2022-02null or fewer
2022-03null or fewer
2022-04null or fewer
2022-05null or fewer
2022-06null or fewer
2022-07null or fewer
2022-08null or fewer
2022-09null or fewer
2022-10null or fewer
2022-11null or fewer
2022-12null or fewer
2023-01null or fewer
2023-02null or fewer
2023-03null or fewer
2023-04null or fewer
2023-05null or fewer
2023-06null or fewer
2023-0790
2023-0850
2023-09null or fewer
2023-10null or fewer
2023-11null or fewer
2023-12null or fewer
2024-01null or fewer
2024-02null or fewer
2024-03null or fewer
2024-04null or fewer
2024-05null or fewer
2024-06null or fewer
2024-07null or fewer
2024-0860
2024-09null or fewer
2024-10null or fewer
2024-11null or fewer
2024-12null or fewer
2025-01null or fewer
2025-02null or fewer
2025-03null or fewer
2025-04null or fewer
2025-05null or fewer
2025-0650
2025-07null or fewer
2025-08null or fewer
2025-09null or fewer
2025-10null or fewer
2025-11null or fewer
2025-12null or fewer
2026-01null or fewer
2026-02null or fewer
2026-03null or fewer
2026-04null or fewer
2026-0570

Products

The products that kept showing up in Elecom-co-ltd's monthly top three, with their CVEs summed over those months.

  1. Elecom Lan Routers81 month
  2. Wrc-1167ghbk3-a51 month
  3. Wrc-1167febk-a41 month
  4. Wrc-1167gebk-s41 month
  5. Elecom Routers31 month
  6. Wab-be187-m31 month
  7. Wab-be36-m31 month
  8. Wab-be36-s31 month
  9. Wrc-300febk-s31 month
  10. Wrc-x3000gs2-w31 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Elecom-co-ltd.

  1. CVE-2026-61376ELECOM wireless LAN routers and access points devices contain an OS Command Injection vulnerability in Restore Settings. If this vulnerability is exploited, an arbitrary OS command may be executed ...7.2
  2. CVE-2026-59764ELECOM wireless LAN routers and access points devices contain an OS Command Injection vulnerability in WebUI. If this vulnerability is exploited, an arbitrary OS command may be executed by an attac...7.2
  3. CVE-2026-44387ELECOM wireless LAN routers and access points devices contain a reflected cross-site scripting vulnerability in WebUI. If this vulnerability is exploited, an arbitrary script may be executed on a l...5.2
  4. CVE-2026-42961ELECOM wireless LAN access point devices implement CSRF protection mechanism, but with inadequate handling of CSRF tokens. If a user views a malicious page while logged in, the user may be tricked ...4.3
  5. CVE-2026-42950ELECOM wireless LAN access point devices do not check if language parameter has an appropriate value. If a user views a malicious page while logged in, the admin page on the user's web browser may ...4.3
  6. CVE-2026-42948Stored cross-site scripting vulnerability exists in ELECOM wireless LAN access point devices. If one of the administrators input malicious data, an arbitrary script may be executed in another admin...4.8
  7. CVE-2026-42062ELECOM wireless LAN access point devices contain an OS command injection in processing of username parameter. If processing a crafted request, an arbitrary OS command may be executed. No authentica...9.8
  8. CVE-2026-40621ELECOM wireless LAN access point devices do not require authentication to access some specific URLs. The affected product may be operated without authentication.9.8
  9. CVE-2026-35506ELECOM wireless LAN access point devices contain an OS command injection vulnerability in processing of ping_ip_addr parameter. If processing a crafted request sent by a logged-in user, an arbitrar...7.2
  10. CVE-2026-25107ELECOM wireless LAN access point devices use a hard-coded cryptographic key when creating backups of configuration files. An attacker who knows the encryption key can tamper the configuration file ...6.5
  11. CVE-2026-24465Stack-based buffer overflow vulnerability exists in ELECOM wireless LAN access point devices. A crafted packet may lead to arbitrary code execution.9.8
  12. CVE-2026-24449For WRC-X1500GS-B and WRC-X1500GSA-B, the initial passwords can be calculated easily from the system information.4.6
  13. CVE-2026-22550OS command injection vulnerability exists in ELECOM wireless LAN products. A crafted request from a logged-in user may lead to an arbitrary OS command execution.8.8
  14. CVE-2026-20704Cross-site request forgery vulnerability exists in ELECOM wireless LAN products. If a user accesses a malicious page while logged-in to the affected product, unintended operations may be performed.4.3
  15. CVE-2025-66271Clone for Windows provided by ELECOM CO.,LTD. registers a Windows service with an unquoted file path. A user with the write permission on the root directory of the system drive may execute arbitrar...6.7

The record

Peak rank
#43 in Dec 2021
Busiest month shown
Dec 2021, 13 CVEs
Months with a KEV entry
0 since Feb 2021
Monthly snapshots
8 since 2021
Elecom-co-ltd's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store