CVE-2026-24465Disclosure(elecom / wab-s300iw-ac)

MEDIUMCVSS 9.3 · CRITICAL

Exploitation ongoing with high activity in latest observed window (3 mentions)

Immediate actions

  • Patch elecom wab-s300iw-ac systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

Stack-based buffer overflow vulnerability exists in ELECOM wireless LAN access point devices. A crafted packet may lead to arbitrary code execution.

4.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-121

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • wab-s300iw-ac
  • wab-s300iw-ac_firmware
  • wab-s300iw-pd
  • wab-s300iw-pd_firmware

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 7 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 6 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 4 mentions (2026-02-03); latest day: 3
  • 7 total mentions across 2 days

Affected systems

Vendors
Products
wab-s300iw-acwab-s300iw-ac_firmwarewab-s300iw-pdwab-s300iw-pd_firmwarewab-s300iw2-pdwab-s300iw2-pd_firmwarewab-s733iw-acwab-s733iw-ac_firmwarewab-s733iw-pdwab-s733iw-pd_firmware

Deep dive

Activity timeline7 mentions / 2d
01234Mentions · 2026-02-03: 4Mentions · 2026-02-05: 3Active Exploitation · 2026-02-05: 1Patch / Workaround · 2026-02-03: 1Patch / Workaround · 2026-02-05: 2Technical Details · 2026-02-03: 4Technical Details · 2026-02-05: 202-0302-05
Signal classification4 categories
Disclosure
457.1%
Patch
114.3%
Active Exploitation
114.3%
General
114.3%
Referenced assets10 URLs
Classification over time
DateTotalLabels
2026-02-034
Disclosure3Patch1
2026-02-053
Active Exploitation1Disclosure1General1
Full discourse7 posts
  • ラック公式@lac_security
    Disclosure

    【注意喚起】複数のエレコム製壁埋め込み型アクセスポイントにおける脆弱性 https://www.lac.co.jp/lacwatch/alert/20260205_004637.html エレコム株式会社が提供する複数の壁埋め込み型アクセスポイントにインターネット側から認証なしに攻撃されうるスタックベースのバッファオーバーフローの脆弱性 (CVE-2026-24465) が存在することを発見しました。 本記事では、この脆弱性の概要と対策を紹介します! #株式会社ラック #注意喚起

    Post summary

    A stack-based buffer overflow in multiple Elecom wall-embedded access points (CVE-2026-24465) is disclosed, with countermeasures highlighted, but no PoC, exploit code, or active exploitation is reported.

    0401452.6K
    21.9K followersView on X
  • NerdieNews@NewsNerdie
    Active Exploitation

    Today's Top Cybersecurity News – February 05, 2026 1. Critical Metro4Shell RCE Vulnerability Actively Exploited in React Native CLI The Metro4Shell vulnerability (CVE-2025-11953) in the React Native Metro Development Server is being actively exploited by threat actors to execute arbitrary code remotely. This flaw allows attackers to deliver malicious payloads targeting developer systems on Windows and Linux, posing a significant risk to development environments. Sources: Bleepingcomputer, Crowdstrike, Cvefeed, Darkreading, Feedburner, Gbhackers, Infosecurity-Magazine, Krebsonsecurity, Securityaffairs, Securityweek https://thehackernews.com/2026/02/hackers-exploit-metro4shell-rce-flaw-in.html 2. CVE-2026-1341: Critical Missing Authentication in Avation Light Engine Pro Avation Light Engine Pro's configuration and control interface lacks any authentication or access control, allowing unauthorized users to potentially manipulate critical settings. This vulnerability poses a severe risk of unauthorized access and control over affected systems. Sources: Cvefeed, Gbhackers https://cvefeed.io/vuln/detail/CVE-2026-1341 3. Multiple Critical Vulnerabilities in n8n Workflow Automation Platform Allow RCE and Data Exposure Several severe vulnerabilities have been identified in the n8n open source workflow automation platform, including sandbox escapes, arbitrary file write and read, OS command injection, and stored XSS. These flaws allow authenticated users with workflow modification permissions to execute remote code, read sensitive files, and perform cross-site scripting attacks, potentially leading to full system compromise. Patches addressing these issues have been released in recent versions. Sources: Bleepingcomputer, Cvefeed, Feedburner, Infosecurity-Magazine https://cvefeed.io/vuln/detail/CVE-2026-25115 4. Multiple Critical Vulnerabilities Disclosed in Wireless Access Points Including ELECOM and Hikvision Several critical vulnerabilities have been disclosed affecting wireless access points from ELECOM, Hikvision, and WRC models. These include a stack-based buffer overflow, authenticated command execution, and OS command injection, potentially allowing arbitrary code or command execution by attackers. Immediate mitigation and patching are recommended to prevent exploitation. Sources: Cvefeed, Gbhackers https://cvefeed.io/vuln/detail/CVE-2026-24465 5. Critical XXE Vulnerability in Apache Syncope Console Enables Session Hijacking A critical XML External Entity (XXE) vulnerability (CVE-2026-23795) in Apache Syncope's Console component allows authenticated administrators to execute attacks that can extract sensitive data and hijack active user sessions. This flaw affects multiple versions and poses significant risks to identity and access management systems. Sources: Cvefeed, Gbhackers https://gbhackers.com/apache-syncope-vulnerability/ Stay sharp. Stay secure. #NerdieNews #InfoSec #CyberSecurity #TechNews #DataSecurity #CyberThreats

    Post summary

    The article reports that Metro4Shell (CVE-2025-11953) is being actively exploited in the wild, while also noting patches for several other critical vulnerabilities, highlighting the urgency of applying mitigations.

    0001068
    54 followersView on X
  • Autumn Good@autumn_good_35
    General

    『現時点では本脆弱性を悪用した攻撃は確認されていませんが、インターネット側からアクセス可能な当該機器が存在することを確認しているため注意が必要です』 CVE-2026-24465 複数のエレコム製壁埋め込み型アクセスポイントにおける脆弱性 | LAC WATCH https://www.lac.co.jp/lacwatch/alert/20260205_004637.html

    Post summary

    An advisory states that no exploitation has been observed yet for CVE‑2026‑24465, but devices are exposed to the Internet and should be monitored.

    00000446
    6.7K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-24465: CRITICAL] Stack-based buffer overflow vulnerability exists in ELECOM wireless LAN access point devices. A crafted packet may lead to arbitrary code execution.#cve,CVE-2026-24465,#cybersecurity https://cvefind.com/CVE-2026-24465

    Post summary

    A critical stack-based buffer overflow in ELECOM wireless LAN access points can lead to arbitrary code execution via crafted packets.

    0000063
    583 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-24465 - Critical Stack-based buffer overflow vulnerability exists in ELECOM wireless LAN access point devices. A crafted packet may lead to arbitrary code execution. https://www.thehackerwire.com/vulnerability/CVE-2026-24465/ https://t.co/tPFVBrEmmr

    Post summary

    The tweet announces CVE-2026-24465 as a critical stack‑based buffer overflow in ELECOM wireless LAN access points that can lead to arbitrary code execution via crafted packets.

    0000055
    113 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-24465 Stack-based buffer overflow vulnerability exists in ELECOM wireless LAN access point devices. A crafted packet may lead to arbitrary code execution. https://www.cve.org/CVERecord?id=CVE-2026-24465

    Post summary

    The post announces a stack-based buffer overflow vulnerability (CVE-2026-24465) in ELECOM wireless LAN access points that could enable arbitrary code execution when a crafted packet is received.

    00000186
    56.5K followersView on X
  • 0day Signal@0dayPublishing
    Patch

    🚨 CVE-2026-24465: ELECOM CO.,LTD. (CVSS: 9.8)... Stack-based overflow in ELECOM WAPs allows remote code execution with no authentication - patch immediately or segment ... https://zerodaysignal.com/vulnerability/CVE-2026-24465 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    ELECOM WAP stack‑based overflow (CVE-2026-24465) enables unauthenticated remote code execution; users are urged to apply patches or isolate devices immediately.

    0000081
    132 followersView on X
CPE platform detail16 entries

16 of 16 entries

PartVendorProductVersionTarget SWTarget HW
HWelecomwab-s300iw-ac---
OSelecomwab-s300iw-ac_firmware---
HWelecomwab-s300iw-pd---
OSelecomwab-s300iw-pd_firmware---
HWelecomwab-s300iw2-pd---
OSelecomwab-s300iw2-pd_firmware---
HWelecomwab-s733iw-ac---
OSelecomwab-s733iw-ac_firmware---
HWelecomwab-s733iw-pd---
OSelecomwab-s733iw-pd_firmware---
HWelecomwab-s733iw2-pd---
OSelecomwab-s733iw2-pd_firmware---
HWelecomwrc-x1500gs-b---
OSelecomwrc-x1500gs-b_firmware---
HWelecomwrc-x1500gsa-b---
OSelecomwrc-x1500gsa-b_firmware---

Explore more