First published: Sun Dec 26 2021(Updated: )
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects LBR20 before 2.6.3.50, RBS50Y before 2.7.3.22, RBR10 before 2.7.3.22, RBR20 before 2.7.3.22, RBR40 before 2.7.3.22, RBR50 before 2.7.3.22, RBS10 before 2.7.3.22, RBS20 before 2.7.3.22, RBS40 before 2.7.3.22, RBS50 before 2.7.3.22, RBK12 before 2.7.3.22, RBK20 before 2.7.3.22, RBK40 before 2.7.3.22, and RBK50 before 2.7.3.22.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Lbr20 Firmware | <2.6.3.50 | |
Netgear Lbr20 | ||
Netgear Rbs50y Firmware | <2.7.3.22 | |
Netgear Rbs50y | ||
Netgear Rbr10 Firmware | <2.7.3.22 | |
Netgear Rbr10 | ||
Netgear Rbr20 Firmware | <2.7.3.22 | |
Netgear Rbr20 | ||
Netgear Rbr40 Firmware | <2.7.3.22 | |
Netgear Rbr40 | ||
Netgear Rbr50 Firmware | <2.7.3.22 | |
Netgear Rbr50 | ||
Netgear Rbs10 Firmware | <2.7.3.22 | |
Netgear Rbs10 | ||
Netgear Rbs20 Firmware | <2.7.3.22 | |
Netgear Rbs20 | ||
Netgear Rbs40 Firmware | <2.7.3.22 | |
Netgear Rbs40 | ||
Netgear Rbs50 Firmware | <2.7.3.22 | |
Netgear Rbs50 | ||
Netgear Rbk12 Firmware | <2.7.3.22 | |
Netgear Rbk12 | ||
Netgear Rbk20 Firmware | <2.7.3.22 | |
Netgear Rbk20 | ||
Netgear Rbk40 Firmware | <2.7.3.22 | |
Netgear Rbk40 | ||
Netgear Rbk50 Firmware | <2.7.3.22 | |
Netgear Rbk50 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
LBR20 before 2.6.3.50, RBS50Y before 2.7.3.22, RBR10 before 2.7.3.22, RBR20 before 2.7.3.22, RBR40 before 2.7.3.22, RBR50 before 2.7.3.22, RBS10 before 2.7.3.22, RBS20 before 2.7.3.22, RBS40 before 2.7.3.22, RBS50 before 2.7.3.22
The severity of CVE-2021-45595 is high with a score of 8.8.
CVE-2021-45595 affects NETGEAR devices by allowing command injection by an authenticated user.
To fix CVE-2021-45595, update the firmware of the affected NETGEAR devices to versions that are not vulnerable.
More information about CVE-2021-45595 can be found in the Netgear security advisory (PSV-2020-0462).