CVE-2021-45575: Command Injection
Published Dec 26, 2021
·Updated
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, and RBS850 before 3.2.16.6.
Affected Software
24 affected components
All of the following
Netgear Rbk752 Firmware<3.2.16.6
Netgear RBK752
All of the following
Netgear RBR750 firmware<3.2.16.6
Netgear RBR750
All of the following
Netgear Rbs750 Firmware<3.2.16.6
Netgear RBS750
All of the following
Netgear Rbk852 Firmware<3.2.16.6
Netgear RBK852
All of the following
Netgear Rbr850 Firmware<3.2.16.6
Netgear RBR850
All of the following
Netgear Rbs850 Firmware<3.2.16.6
Netgear RBS850
Netgear Rbk752 Firmware<3.2.16.6
Netgear RBK752
Netgear RBR750 firmware<3.2.16.6
Netgear RBR750
Netgear Rbs750 Firmware<3.2.16.6
Netgear RBS750
Netgear Rbk852 Firmware<3.2.16.6
Netgear RBK852
Netgear Rbr850 Firmware<3.2.16.6
Netgear RBR850
Netgear Rbs850 Firmware<3.2.16.6
Netgear RBS850
Event History
Dec 26, 2021
CVE Published
via MITRE·12:44 AM
Data Sourced
via MITRE·12:44 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-45575.
2
Which devices are affected by this vulnerability?
Certain NETGEAR devices are affected, including RBK752, RBR750, RBS750, RBK852, RBR850, and RBS850.
3
What is the severity of CVE-2021-45575?
The severity of CVE-2021-45575 is high.
4
How does the vulnerability affect the affected devices?
The vulnerability allows an authenticated user to perform command injection on the affected devices.
5
Is there a fix available for this vulnerability?
Yes, a fix is available for this vulnerability. Users should update their devices to RBK752, RBR750, RBS750, RBK852, RBR850, or RBS850 firmware version 3.2.16.6 or later.