ZeroHour

CVE-2021-45628

CVSS 3.1
8.8 high
EPSS
<1%p55
Published
()
Modified
Description

Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 3.2.18.2, RBK752 before 3.2.17.12, RBR750 before 3.2.17.12, RBS750 before 3.2.17.12, RBK852 before 3.2.17.12, RBR850 before 3.2.17.12, RBS850 before 3.2.17.12, RBS40V before 2.6.2.4, and RBW30 before 2.6.2.2.

Vendors
netgear
Products
cbr40 firmware, cbr750 firmware, rbk752 firmware, rbr750 firmware, rbs750 firmware, rbk852 firmware, rbr850 firmware, rbs850 firmware, rbs40v firmware, rbw30 firmware
Weakness
CWE-77
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.