First published: Sun Dec 26 2021(Updated: )
Certain NETGEAR devices are affected by authentication bypass. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, RBR852 before 3.2.17.12, RBR850 before 3.2.17.12, and RBS850 before 3.2.17.12.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR CBR40 firmware | <2.5.0.24 | |
Netgear CBR40 | ||
NETGEAR CBR750 | <4.6.3.6 | |
NETGEAR CBR750 | ||
NETGEAR RBR850 firmware | <3.2.17.12 | |
NETGEAR RBR850 firmware | ||
NETGEAR RBR852 | <3.2.17.12 | |
NETGEAR RBR852 | ||
NETGEAR RBS850 | <3.2.17.12 | |
NETGEAR RBS850 firmware | ||
All of | ||
NETGEAR CBR40 firmware | <2.5.0.24 | |
Netgear CBR40 | ||
All of | ||
NETGEAR CBR750 | <4.6.3.6 | |
NETGEAR CBR750 | ||
All of | ||
NETGEAR RBR850 firmware | <3.2.17.12 | |
NETGEAR RBR850 firmware | ||
All of | ||
NETGEAR RBR852 | <3.2.17.12 | |
NETGEAR RBR852 | ||
All of | ||
NETGEAR RBS850 | <3.2.17.12 | |
NETGEAR RBS850 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE ID of this vulnerability is CVE-2021-45504.
This vulnerability affects CBR40 before version 2.5.0.24, CBR750 before version 4.6.3.6, RBR852 before version 3.2.17.12, RBR850 before version 3.2.17.12, and RBS850 before version 3.2.17.12.
The severity of CVE-2021-45504 is critical with a CVSS score of 9.8.
This vulnerability allows for authentication bypass on certain NETGEAR devices.
Yes, a fix is available. It is recommended to update the affected devices to the latest firmware versions.