CVE-2021-45494: High severity netgear rbk352 vulnerability
Published Dec 26, 2021
·Updated
Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.
Affected Software
12 affected components
All of the following
Netgear Rbk352 Firmware<4.4.0.10
Netgear RBK352
All of the following
Netgear Rbr350 Firmware<4.4.0.10
Netgear RBR350
All of the following
Netgear Rbs350 Firmware<4.4.0.10
Netgear RBS350
Netgear Rbk352 Firmware<4.4.0.10
Netgear RBK352
Netgear Rbr350 Firmware<4.4.0.10
Netgear RBR350
Netgear Rbs350 Firmware<4.4.0.10
Netgear RBS350
Remediation
Event History
Dec 26, 2021
CVE Published
via MITRE·01:04 AM
Data Sourced
via MITRE·01:04 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2021-45494?
CVE-2021-45494 is a vulnerability that allows an attacker to read arbitrary files on certain NETGEAR devices.
2
Which NETGEAR devices are affected by CVE-2021-45494?
RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10 are affected by CVE-2021-45494.
3
What is the severity of CVE-2021-45494?
CVE-2021-45494 has a severity rating of 4.5, which is considered high.
4
How can an attacker exploit CVE-2021-45494?
An attacker can exploit CVE-2021-45494 to read arbitrary files on the affected NETGEAR devices.
5
Is there a fix for CVE-2021-45494?
Yes, updating to RBK352 firmware 4.4.0.10, RBR350 firmware 4.4.0.10, or RBS350 firmware 4.4.0.10 will fix CVE-2021-45494.