CVE-2021-45514: Command Injection
Published Dec 26, 2021
·Updated
NETGEAR XR1000 devices before 1.0.0.58 are affected by command injection by an unauthenticated attacker.
Affected Software
4 affected components
Netgear Xr1000 Firmware<1.0.0.58
Netgear XR1000
All of the following
Netgear Xr1000 Firmware<1.0.0.58
Netgear XR1000
Event History
Dec 26, 2021
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2021-45514.
2
What is the severity level of CVE-2021-45514?
The severity level of CVE-2021-45514 is critical.
3
Which devices are affected by CVE-2021-45514?
NETGEAR XR1000 devices before firmware version 1.0.0.58 are affected by CVE-2021-45514.
4
How can an attacker exploit CVE-2021-45514?
An unauthenticated attacker can exploit CVE-2021-45514 by performing command injection.
5
Is there a fix for CVE-2021-45514?
Yes, updating to firmware version 1.0.0.58 or later will fix CVE-2021-45514.