CVE-2021-45584: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, and RBS850 before 3.2.16.6.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-45584?
CVE-2021-45584 is a vulnerability that allows command injection by an authenticated user on certain NETGEAR devices.
Which devices are affected by CVE-2021-45584?
RBK752, RBR750, RBS750, RBK852, RBR850, and RBS850 devices running firmware versions before 3.2.16.6 are affected.
How severe is CVE-2021-45584?
CVE-2021-45584 has a severity score of 8.4, which is considered high.
How can I fix the CVE-2021-45584 vulnerability?
To fix the CVE-2021-45584 vulnerability, you should update the firmware of your affected NETGEAR devices to version 3.2.16.6 or later.
Where can I find more information about CVE-2021-45584?
You can find more information about CVE-2021-45584 in the Netgear Security Advisory PSV-2020-0092 at the following link: https://kb.netgear.com/000064106/Security-Advisory-for-Post-Authentication-Command-Injection-on-Some-WiFi-Systems-PSV-2020-0092