CVE-2021-45595: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects LBR20 before 2.6.3.50, RBS50Y before 2.7.3.22, RBR10 before 2.7.3.22, RBR20 before 2.7.3.22, RBR40 before 2.7.3.22, RBR50 before 2.7.3.22, RBS10 before 2.7.3.22, RBS20 before 2.7.3.22, RBS40 before 2.7.3.22, RBS50 before 2.7.3.22, RBK12 before 2.7.3.22, RBK20 before 2.7.3.22, RBK40 before 2.7.3.22, and RBK50 before 2.7.3.22.
Affected Software
Event History
Frequently Asked Questions
Which NETGEAR devices are affected by CVE-2021-45595?
LBR20 before 2.6.3.50, RBS50Y before 2.7.3.22, RBR10 before 2.7.3.22, RBR20 before 2.7.3.22, RBR40 before 2.7.3.22, RBR50 before 2.7.3.22, RBS10 before 2.7.3.22, RBS20 before 2.7.3.22, RBS40 before 2.7.3.22, RBS50 before 2.7.3.22
What is the severity of CVE-2021-45595?
The severity of CVE-2021-45595 is high with a score of 8.8.
How does CVE-2021-45595 affect NETGEAR devices?
CVE-2021-45595 affects NETGEAR devices by allowing command injection by an authenticated user.
How can I fix CVE-2021-45595?
To fix CVE-2021-45595, update the firmware of the affected NETGEAR devices to versions that are not vulnerable.
Where can I find more information about CVE-2021-45595?
More information about CVE-2021-45595 can be found in the Netgear security advisory (PSV-2020-0462).