CVE-2021-29072: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK852 before 3.2.17.12, RBK853 before 3.2.17.12, RBK854 before 3.2.17.12, RBR850 before 3.2.17.12, and RBS850 before 3.2.17.12.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-29072?
CVE-2021-29072 has a high severity rating due to the command injection vulnerability present in multiple NETGEAR devices.
How do I fix CVE-2021-29072?
To fix CVE-2021-29072, update your NETGEAR device firmware to version 3.2.17.12 or later.
Which NETGEAR devices are affected by CVE-2021-29072?
CVE-2021-29072 affects NETGEAR RBK852, RBK853, RBK854, RBR850, and RBS850 devices running firmware versions prior to 3.2.17.12.
Is CVE-2021-29072 a remote exploit?
CVE-2021-29072 requires authentication for exploitation, making it an authenticated command injection vulnerability.
What impact does CVE-2021-29072 have on users?
CVE-2021-29072 may allow an authenticated attacker to execute arbitrary commands on the affected NETGEAR devices.