First published: Sun Dec 26 2021(Updated: )
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBS50Y before 2.7.3.22, RBR20 before 2.7.3.22, RBR40 before 2.7.3.22, RBR50 before 2.7.3.22, RBS20 before 2.7.3.22, RBS40 before 2.7.3.22, RBS50 before 2.7.3.22, RBK20 before 2.7.3.22, RBK40 before 2.7.3.22, and RBK50 before 2.7.3.22.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Rbr20 Firmware | <2.7.3.22 | |
Netgear Rbr20 | ||
Netgear Rbr40 Firmware | <2.7.3.22 | |
Netgear Rbr40 | ||
Netgear Rbr50 Firmware | <2.7.3.22 | |
Netgear Rbr50 | ||
Netgear Rbs20 Firmware | <2.7.3.22 | |
Netgear Rbs20 | ||
Netgear Rbs40 Firmware | <2.7.3.22 | |
Netgear Rbs40 | ||
Netgear Rbs50 Firmware | <2.7.3.22 | |
Netgear Rbs50 | ||
Netgear Rbk20 Firmware | <2.7.3.22 | |
Netgear Rbk20 | ||
Netgear Rbk40 Firmware | <2.7.3.22 | |
Netgear Rbk40 | ||
Netgear Rbk50 Firmware | <2.7.3.22 | |
Netgear Rbk50 | ||
Netgear Rbs50y Firmware | <2.7.3.22 | |
Netgear Rbs50y |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45594 is a vulnerability that affects certain NETGEAR devices, allowing an authenticated user to inject commands.
NETGEAR devices such as RBS50Y, RBR20, RBR40, RBR50, RBS20, RBS40, RBS50, RBK20, RBK40, and RBK50 are affected by CVE-2021-45594.
CVE-2021-45594 has a severity rating of 6.8 (high).
An authenticated user can exploit CVE-2021-45594 by injecting malicious commands into the affected NETGEAR devices.
Yes, a fix for CVE-2021-45594 is available. It is recommended to update the firmware of the affected NETGEAR devices to version 2.7.3.22 or later.