Vulnerability Description
ELECOM wireless LAN routers are vulnerable to sensitive information exposure, which allows a network-adjacent unauthorized attacker to obtain sensitive information. Affected products and versions are as follows: WRC-1167GHBK-S v1.03 and earlier, WRC-1167GEBK-S v1.03 and earlier, WRC-1167FEBK-S v1.04 and earlier, WRC-1167GHBK3-A v1.24 and earlier, WRC-1167FEBK-A v1.18 and earlier, WRC-F1167ACF2 all versions, WRC-600GHBK-A all versions, WRC-733FEBK2-A all versions, WRC-1467GHBK-A all versions, WRC-1467GHBK-S all versions, WRC-1900GHBK-A all versions, and WRC-1900GHBK-S all versions.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Elecom | Wrc-1167Ghbk-S Firmware | <= 1.03 |
| Elecom | Wrc-1167Ghbk-S | - |
| Elecom | Wrc-1167Gebk-S Firmware | <= 1.03 |
| Elecom | Wrc-1167Gebk-S | - |
| Elecom | Wrc-1167Febk-S Firmware | <= 1.04 |
| Elecom | Wrc-1167Febk-S | - |
| Elecom | Wrc-1167Ghbk3-A Firmware | <= 1.24 |
| Elecom | Wrc-1167Ghbk3-A | - |
| Elecom | Wrc-1167Febk-A Firmware | <= 1.18 |
| Elecom | Wrc-1167Febk-A | - |
Related Weaknesses (CWE)
References
- https://jvn.jp/en/jp/JVN05223215/Third Party Advisory
- https://www.elecom.co.jp/news/security/20230711-01/Vendor Advisory
- https://www.elecom.co.jp/news/security/20230810-01/
- https://jvn.jp/en/jp/JVN05223215/Third Party Advisory
- https://www.elecom.co.jp/news/security/20230711-01/Vendor Advisory
- https://www.elecom.co.jp/news/security/20230810-01/
FAQ
What is CVE-2023-37563?
CVE-2023-37563 is a vulnerability with a CVSS score of 6.5 (MEDIUM). ELECOM wireless LAN routers are vulnerable to sensitive information exposure, which allows a network-adjacent unauthorized attacker to obtain sensitive information. Affected products and versions are ...
How severe is CVE-2023-37563?
CVE-2023-37563 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-37563?
Check the references section above for vendor advisories and patch information. Affected products include: Elecom Wrc-1167Ghbk-S Firmware, Elecom Wrc-1167Ghbk-S, Elecom Wrc-1167Gebk-S Firmware, Elecom Wrc-1167Gebk-S, Elecom Wrc-1167Febk-S Firmware.