Vulnerability Details CVE-2026-22550
OS command injection vulnerability exists in WRC-X1500GS-B and WRC-X1500GSA-B. A crafted request from a logged-in user may lead to an arbitrary OS command execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.7%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2026-22550
-
cpe:2.3:h:elecom:wrc-x1500gs-b:-
-
cpe:2.3:h:elecom:wrc-x1500gsa-b:-
-
cpe:2.3:o:elecom:wrc-x1500gs-b_firmware:1.05
-
cpe:2.3:o:elecom:wrc-x1500gs-b_firmware:1.09
-
cpe:2.3:o:elecom:wrc-x1500gs-b_firmware:1.10
-
cpe:2.3:o:elecom:wrc-x1500gs-b_firmware:1.11
-
cpe:2.3:o:elecom:wrc-x1500gs-b_firmware:1.12
-
cpe:2.3:o:elecom:wrc-x1500gsa-b_firmware:1.05
-
cpe:2.3:o:elecom:wrc-x1500gsa-b_firmware:1.09
-
cpe:2.3:o:elecom:wrc-x1500gsa-b_firmware:1.10
-
cpe:2.3:o:elecom:wrc-x1500gsa-b_firmware:1.11
-
cpe:2.3:o:elecom:wrc-x1500gsa-b_firmware:1.12