CVE-2021-45560: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, and RBS850 before 3.2.16.6.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-45560?
CVE-2021-45560 is categorized as a high severity vulnerability due to the risk of command injection by authenticated users.
How do I fix CVE-2021-45560?
To fix CVE-2021-45560, upgrade the firmware of affected NETGEAR devices to version 3.2.16.6 or later.
Which NETGEAR devices are affected by CVE-2021-45560?
CVE-2021-45560 affects NETGEAR RBK752, RBR750, RBS750, RBK852, RBR850, and RBS850 devices prior to firmware version 3.2.16.6.
What type of attack can CVE-2021-45560 be exploited for?
CVE-2021-45560 can be exploited for command injection, allowing attackers to execute arbitrary commands on the affected devices.
Is a user required to be authenticated to exploit CVE-2021-45560?
Yes, an attacker must be an authenticated user to exploit CVE-2021-45560, making it a post-authentication vulnerability.