ZeroHour

CVE-2021-45626

CVSS 3.1
8.8 high
EPSS
<1%p53
Published
()
Modified
Description

Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK20 before 2.6.1.36, RBR20 before 2.6.1.36, RBS20 before 2.6.1.38, RBK40 before 2.6.1.36, RBR40 before 2.6.1.36, RBS40 before 2.6.1.38, RBK50 before 2.6.1.40, RBR50 before 2.6.1.40, RBS50 before 2.6.1.40, and RBS50Y before 2.6.1.40.

Vendors
netgear
Products
rbk20 firmware, rbr20 firmware, rbs20 firmware, rbk40 firmware, rbr40 firmware, rbs40 firmware, rbk50 firmware, rbr50 firmware, rbs50 firmware, rbs50y firmware
Weakness
CWE-77
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.