CVE-2021-45594: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBS50Y before 2.7.3.22, RBR20 before 2.7.3.22, RBR40 before 2.7.3.22, RBR50 before 2.7.3.22, RBS20 before 2.7.3.22, RBS40 before 2.7.3.22, RBS50 before 2.7.3.22, RBK20 before 2.7.3.22, RBK40 before 2.7.3.22, and RBK50 before 2.7.3.22.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-45594?
CVE-2021-45594 is a vulnerability that affects certain NETGEAR devices, allowing an authenticated user to inject commands.
Which NETGEAR devices are affected by CVE-2021-45594?
NETGEAR devices such as RBS50Y, RBR20, RBR40, RBR50, RBS20, RBS40, RBS50, RBK20, RBK40, and RBK50 are affected by CVE-2021-45594.
What is the severity of CVE-2021-45594?
CVE-2021-45594 has a severity rating of 6.8 (high).
How can an authenticated user exploit CVE-2021-45594?
An authenticated user can exploit CVE-2021-45594 by injecting malicious commands into the affected NETGEAR devices.
Is there a fix for CVE-2021-45594?
Yes, a fix for CVE-2021-45594 is available. It is recommended to update the firmware of the affected NETGEAR devices to version 2.7.3.22 or later.