CVE-2021-29070: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK852 before 3.2.17.12, RBK853 before 3.2.17.12, RBK854 before 3.2.17.12, RBR850 before 3.2.17.12, and RBS850 before 3.2.17.12.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-29070?
CVE-2021-29070 has a medium severity rating due to the potential for authenticated command injection on affected NETGEAR devices.
How do I fix CVE-2021-29070?
To fix CVE-2021-29070, update to the firmware version 3.2.17.12 or later for the affected NETGEAR devices.
Which NETGEAR devices are affected by CVE-2021-29070?
CVE-2021-29070 affects NETGEAR devices including RBK852, RBK853, RBK854, RBR850, and RBS850 prior to firmware version 3.2.17.12.
Can CVE-2021-29070 be exploited remotely?
CVE-2021-29070 requires authentication to exploit, which limits the risk compared to remote vulnerabilities.
What is a command injection vulnerability as seen in CVE-2021-29070?
A command injection vulnerability allows an attacker to execute arbitrary commands on the device, potentially compromising its security.