CVE-2021-45504: Critical severity netgear cbr40 firmware vulnerability
Published Dec 26, 2021
·Updated
Certain NETGEAR devices are affected by authentication bypass. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, RBR852 before 3.2.17.12, RBR850 before 3.2.17.12, and RBS850 before 3.2.17.12.
Affected Software
20 affected components
All of the following
Netgear Cbr40 Firmware<2.5.0.24
Netgear CBR40
All of the following
Netgear Cbr750 Firmware<4.6.3.6
Netgear CBR750
All of the following
Netgear Rbr850 Firmware<3.2.17.12
Netgear RBR850
All of the following
Netgear Rbr852 Firmware<3.2.17.12
Netgear RBR852
All of the following
Netgear Rbs850 Firmware<3.2.17.12
Netgear RBS850
Netgear Cbr40 Firmware<2.5.0.24
Netgear CBR40
Netgear Cbr750 Firmware<4.6.3.6
Netgear CBR750
Netgear Rbr850 Firmware<3.2.17.12
Netgear RBR850
Netgear Rbr852 Firmware<3.2.17.12
Netgear RBR852
Netgear Rbs850 Firmware<3.2.17.12
Netgear RBS850
Remediation
Event History
Dec 26, 2021
CVE Published
via MITRE·01:02 AM
Data Sourced
via MITRE·01:02 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2021-45504.
2
Which NETGEAR devices are affected by this vulnerability?
This vulnerability affects CBR40 before version 2.5.0.24, CBR750 before version 4.6.3.6, RBR852 before version 3.2.17.12, RBR850 before version 3.2.17.12, and RBS850 before version 3.2.17.12.
3
What is the severity of CVE-2021-45504?
The severity of CVE-2021-45504 is critical with a CVSS score of 9.8.
4
How does this vulnerability manifest?
This vulnerability allows for authentication bypass on certain NETGEAR devices.
5
Is there a fix available for this vulnerability?
Yes, a fix is available. It is recommended to update the affected devices to the latest firmware versions.