CVE-2021-45543: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R8000 before 1.0.4.74, RAX200 before 1.0.4.120, R8000P before 1.4.2.84, R7900P before 1.4.2.84, RBR850 before 3.2.17.12, RBS850 before 3.2.17.12, and RBK852 before 3.2.17.12.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the CVE ID for this vulnerability?
The CVE ID for this vulnerability is CVE-2021-45543.
Which NETGEAR devices are affected by this vulnerability?
This vulnerability affects NETGEAR devices including R8000 before 1.0.4.74, RAX200 before 1.0.4.120, R8000P before 1.4.2.84, R7900P before 1.4.2.84, RBR850 before 3.2.17.12, RBS850 before 3.2.17.12, and RBK852 before 3.2.17.12.
What is the severity of CVE-2021-45543?
The severity of CVE-2021-45543 is high with a CVSS score of 6.8.
How does this vulnerability impact NETGEAR devices?
This vulnerability allows an authenticated user to execute arbitrary commands on the affected NETGEAR devices, potentially leading to unauthorized access and control.
How can I fix the vulnerability in my NETGEAR device?
To fix this vulnerability, you should update your affected NETGEAR device firmware to the latest version provided by the vendor.