CVE-2026-42062
ELECOM wireless LAN access point devices contain an OS command injection in processing of username parameter. If process
ELECOM wireless LAN access point devices contain an OS command injection in processing of username parameter. If processing a crafted request, an arbitrary OS command may be executed. No authentication is required.
CRITICAL · CVSS 9.8
EPSS 0.0057
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0