{"dataType":"CVE_RECORD","dataVersion":"5.1","cveMetadata":{"cveId":"CVE-2024-43689","assignerOrgId":"ede6fdc4-6654-4307-a26d-3331c018e2ce","state":"PUBLISHED","assignerShortName":"jpcert","dateReserved":"2024-08-16T04:42:09.104Z","datePublished":"2024-10-21T01:27:15.253Z","dateUpdated":"2025-09-04T15:04:43.804Z"},"containers":{"cna":{"affected":[{"vendor":"ELECOM CO.,LTD.","product":"WAB-I1750-PS","versions":[{"version":"v1.5.10 and earlier","status":"affected"}]},{"vendor":"ELECOM CO.,LTD.","product":"WAB-M1775-PS","versions":[{"version":"v2.1.4 and earlier","status":"affected"}]},{"vendor":"ELECOM CO.,LTD.","product":"WAB-S1167-PS","versions":[{"version":"v1.5.6 and earlier","status":"affected"}]},{"vendor":"ELECOM CO.,LTD.","product":"WAB-S1775","versions":[{"version":"v2.1.4 and earlier","status":"affected"}]},{"vendor":"ELECOM CO.,LTD.","product":"WAB-S733MI","versions":[{"version":"v1.3.2 and earlier","status":"affected"}]}],"descriptions":[{"lang":"en","value":"Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a specially crafted HTTP request, arbitrary code may be executed."}],"problemTypes":[{"descriptions":[{"description":"Stack-based buffer overflow","lang":"en-US","cweId":"CWE-121","type":"CWE"}]}],"references":[{"url":"https://www.elecom.co.jp/news/security/20240827-01/"},{"url":"https://jvn.jp/en/jp/JVN24885537/"}],"metrics":[{"format":"CVSS","scenarios":[{"lang":"en-US","value":"GENERAL"}],"cvssV3_0":{"version":"3.0","baseSeverity":"HIGH","baseScore":8.8,"vectorString":"CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}}],"providerMetadata":{"orgId":"ede6fdc4-6654-4307-a26d-3331c018e2ce","shortName":"jpcert","dateUpdated":"2024-11-26T08:03:12.046Z"}},"adp":[{"affected":[{"vendor":"elecom","product":"wab-s1167-ps_firmware","cpes":["cpe:2.3:o:elecom:wab-s1167-ps_firmware:*:*:*:*:*:*:*:*"],"defaultStatus":"unknown","versions":[{"version":"0","status":"affected","lessThanOrEqual":"1.5.6","versionType":"custom"}]},{"vendor":"elecom","product":"wab-i1750-ps_firmware","cpes":["cpe:2.3:o:elecom:wab-i1750-ps_firmware:*:*:*:*:*:*:*:*"],"defaultStatus":"unknown","versions":[{"version":"0","status":"affected","lessThanOrEqual":"1.5.10","versionType":"custom"}]}],"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2024-10-21T13:40:28.109591Z","id":"CVE-2024-43689","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2025-09-04T15:04:43.804Z"}}]}}