CVE-2021-45570: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, and RBS850 before 3.2.16.6.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-45570?
The severity of CVE-2021-45570 is high with a CVSS score of 6.8.
Which NETGEAR devices are affected by CVE-2021-45570?
RBK752, RBR750, RBS750, RBK852, RBR850, and RBS850 devices are affected by CVE-2021-45570.
How does CVE-2021-45570 impact the affected NETGEAR devices?
CVE-2021-45570 allows command injection by an authenticated user on the affected NETGEAR devices.
What is the recommended version of firmware to fix CVE-2021-45570?
To fix CVE-2021-45570, update the firmware of RBK752, RBR750, RBS750, RBK852, RBR850, and RBS850 devices to version 3.2.16.6 or higher.
Where can I find more information about CVE-2021-45570?
More information about CVE-2021-45570 can be found in the Netgear Security Advisory for Post-Authentication Command Injection on Some WiFi Systems (PSV-2020-0078) at the following reference link: https://kb.netgear.com/000064092/Security-Advisory-for-Post-Authentication-Command-Injection-on-Some-WiFi-Systems-PSV-2020-0078.