CVE-2021-45598: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, RBK852 before 3.2.17.12, RBR850 before 3.2.17.12, and RBS850 before 3.2.17.12.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-45598?
CVE-2021-45598 is a vulnerability found in certain NETGEAR devices that allows an authenticated user to inject commands.
Which NETGEAR devices are affected by CVE-2021-45598?
CVE-2021-45598 affects the following NETGEAR devices: CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, RBK852 before 3.2.17.12, RBR850 before 3.2.17.12, and RBS850 before 3.2.17.12.
What is the severity of CVE-2021-45598?
CVE-2021-45598 has a severity rating of 8.8 (high).
How can an authenticated user exploit CVE-2021-45598?
An authenticated user can exploit CVE-2021-45598 by injecting malicious commands into the affected NETGEAR devices.
Is there a fix available for CVE-2021-45598?
Yes, NETGEAR has released firmware updates to address the CVE-2021-45598 vulnerability. It is recommended to update to the latest firmware version provided by NETGEAR.