CVE-2021-45591: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, and RBS850 before 3.2.16.6.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-45591?
CVE-2021-45591 is a vulnerability that allows an authenticated user to execute arbitrary commands on certain NETGEAR devices.
Which NETGEAR devices are affected by CVE-2021-45591?
CVE-2021-45591 affects RBK752, RBR750, RBS750, RBK852, RBR850, and RBS850 devices.
What is the severity of CVE-2021-45591?
CVE-2021-45591 has a severity rating of 6.8 (high).
How can an authenticated user exploit CVE-2021-45591?
An authenticated user can exploit CVE-2021-45591 by injecting and executing arbitrary commands on the affected NETGEAR devices.
Is there a fix available for CVE-2021-45591?
Yes, a fix for CVE-2021-45591 is available in the RBK752, RBR750, RBS750, RBK852, RBR850, and RBS850 firmware versions 3.2.16.6 and above.