CVE-2021-45592: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, and RBS850 before 3.2.16.6.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-45592?
CVE-2021-45592 is a vulnerability that affects certain NETGEAR devices and allows for command injection by an authenticated user.
Which devices are affected by CVE-2021-45592?
CVE-2021-45592 affects RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, and RBS850 before 3.2.16.6.
How severe is CVE-2021-45592?
CVE-2021-45592 has a severity score of 6.8, which is considered high.
How can I fix CVE-2021-45592?
To fix CVE-2021-45592, update your NETGEAR devices to version 3.2.16.6 or later.
Where can I find more information about CVE-2021-45592?
You can find more information about CVE-2021-45592 in the Netgear security advisory: https://kb.netgear.com/000064114/Security-Advisory-for-Post-Authentication-Command-Injection-on-Some-WiFi-Systems-PSV-2020-0100