CVE-2021-45621
Summary
| CVE | CVE-2021-45621 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-12-26 01:15:00 UTC |
| Updated | 2022-01-10 15:54:00 UTC |
| Description | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 3.2.18.2, EAX20 before 1.0.0.58, EAX80 before 1.0.1.68, EX3700 before 1.0.0.94, EX3800 before 1.0.0.94, EX6120 before 1.0.0.64, EX6130 before 1.0.0.44, EX7000 before 1.0.1.104, EX7500 before 1.0.0.74, LAX20 before 1.1.6.28, MR60 before 1.0.6.116, MS60 before 1.0.6.116, R6300v2 before 1.0.4.52, R6400 before 1.0.1.70, R6400v2 before 1.0.4.106, R6700v3 before 1.0.4.106, R6900P before 1.3.3.140, R7000 before 1.0.11.126, R7000P before 1.3.3.140, R7100LG before 1.0.0.72, R7850 before 1.0.5.74, R7900 before 1.0.4.46, R7900P before 1.4.2.84, R7960P before 1.4.2.84, R8000 before 1.0.4.74, R8000P before 1.4.2.84, R8300 before 1.0.2.154, R8500 before 1.0.2.154, RAX15 before 1.0.3.96, RAX20 before 1.0.3.96, RAX200 before 1.0.4.120, RAX35v2 before 1.0.3.96, RAX40v2 before 1.0.3.96, RAX43 before 1.0.3.96, RAX45 before 1.0.3.96, RAX50 before 1.0.3.96, RAX75 before 1.0.4.120, RAX80 before 1.0.4.120, RBK752 before 3.2.17.12, RBK852 before 3.2.17.12, RBK852 before 3.2.17.12, RBR750 before 3.2.17.12, RBR850 before 3.2.17.12, RBR850 before 3.2.17.12, RBS750 before 3.2.17.12, RBS850 before 3.2.17.12, RBS850 before 3.2.17.12, RS400 before 1.5.1.80, XR1000 before 1.0.0.58, and XR300 before 1.0.3.68. |
Risk And Classification
Problem Types: CWE-77
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | Cbr40 | - | All | All | All |
| Operating System | Netgear | Cbr40 Firmware | All | All | All | All |
| Hardware | Netgear | Cbr750 | - | All | All | All |
| Operating System | Netgear | Cbr750 Firmware | All | All | All | All |
| Hardware | Netgear | Eax20 | - | All | All | All |
| Operating System | Netgear | Eax20 Firmware | All | All | All | All |
| Hardware | Netgear | Eax80 | - | All | All | All |
| Operating System | Netgear | Eax80 Firmware | All | All | All | All |
| Hardware | Netgear | Ex3700 | - | All | All | All |
| Operating System | Netgear | Ex3700 Firmware | All | All | All | All |
| Hardware | Netgear | Ex3800 | - | All | All | All |
| Operating System | Netgear | Ex3800 Firmware | All | All | All | All |
| Hardware | Netgear | Ex6120 | - | All | All | All |
| Operating System | Netgear | Ex6120 Firmware | All | All | All | All |
| Hardware | Netgear | Ex6130 | - | All | All | All |
| Operating System | Netgear | Ex6130 Firmware | All | All | All | All |
| Hardware | Netgear | Ex7000 | - | All | All | All |
| Operating System | Netgear | Ex7000 Firmware | All | All | All | All |
| Hardware | Netgear | Ex7500 | - | All | All | All |
| Operating System | Netgear | Ex7500 Firmware | All | All | All | All |
| Hardware | Netgear | Lax20 | - | All | All | All |
| Operating System | Netgear | Lax20 Firmware | All | All | All | All |
| Hardware | Netgear | Mr60 | - | All | All | All |
| Operating System | Netgear | Mr60 Firmware | All | All | All | All |
| Hardware | Netgear | Ms60 | - | All | All | All |
| Operating System | Netgear | Ms60 Firmware | All | All | All | All |
| Hardware | Netgear | R6300v2 | - | All | All | All |
| Operating System | Netgear | R6300v2 Firmware | All | All | All | All |
| Hardware | Netgear | R6400 | - | All | All | All |
| Hardware | Netgear | R6400v2 | - | All | All | All |
| Operating System | Netgear | R6400v2 Firmware | All | All | All | All |
| Operating System | Netgear | R6400 Firmware | All | All | All | All |
| Hardware | Netgear | R6700v3 | - | All | All | All |
| Operating System | Netgear | R6700v3 Firmware | All | All | All | All |
| Hardware | Netgear | R6900p | - | All | All | All |
| Operating System | Netgear | R6900p Firmware | All | All | All | All |
| Hardware | Netgear | R7000 | - | All | All | All |
| Hardware | Netgear | R7000p | - | All | All | All |
| Operating System | Netgear | R7000p Firmware | All | All | All | All |
| Operating System | Netgear | R7000 Firmware | All | All | All | All |
| Hardware | Netgear | R7100lg | - | All | All | All |
| Operating System | Netgear | R7100lg Firmware | All | All | All | All |
| Hardware | Netgear | R7850 | - | All | All | All |
| Operating System | Netgear | R7850 Firmware | All | All | All | All |
| Hardware | Netgear | R7900 | - | All | All | All |
| Hardware | Netgear | R7900p | - | All | All | All |
| Operating System | Netgear | R7900p Firmware | All | All | All | All |
| Operating System | Netgear | R7900 Firmware | All | All | All | All |
| Hardware | Netgear | R7960p | - | All | All | All |
| Operating System | Netgear | R7960p Firmware | All | All | All | All |
| Hardware | Netgear | R8000 | - | All | All | All |
| Hardware | Netgear | R8000p | - | All | All | All |
| Operating System | Netgear | R8000p Firmware | All | All | All | All |
| Operating System | Netgear | R8000 Firmware | All | All | All | All |
| Hardware | Netgear | R8300 | - | All | All | All |
| Operating System | Netgear | R8300 Firmware | All | All | All | All |
| Hardware | Netgear | R8500 | - | All | All | All |
| Operating System | Netgear | R8500 Firmware | All | All | All | All |
| Hardware | Netgear | Rax15 | - | All | All | All |
| Operating System | Netgear | Rax15 Firmware | All | All | All | All |
| Hardware | Netgear | Rax20 | - | All | All | All |
| Hardware | Netgear | Rax200 | - | All | All | All |
| Operating System | Netgear | Rax200 Firmware | All | All | All | All |
| Operating System | Netgear | Rax20 Firmware | All | All | All | All |
| Hardware | Netgear | Rax35v2 | - | All | All | All |
| Operating System | Netgear | Rax35v2 Firmware | All | All | All | All |
| Hardware | Netgear | Rax40v2 | - | All | All | All |
| Operating System | Netgear | Rax40v2 Firmware | All | All | All | All |
| Hardware | Netgear | Rax43 | - | All | All | All |
| Operating System | Netgear | Rax43 Firmware | All | All | All | All |
| Hardware | Netgear | Rax45 | - | All | All | All |
| Operating System | Netgear | Rax45 Firmware | All | All | All | All |
| Hardware | Netgear | Rax50 | - | All | All | All |
| Operating System | Netgear | Rax50 Firmware | All | All | All | All |
| Hardware | Netgear | Rax75 | - | All | All | All |
| Operating System | Netgear | Rax75 Firmware | All | All | All | All |
| Hardware | Netgear | Rax80 | - | All | All | All |
| Operating System | Netgear | Rax80 Firmware | All | All | All | All |
| Hardware | Netgear | Rbk752 | - | All | All | All |
| Operating System | Netgear | Rbk752 Firmware | All | All | All | All |
| Hardware | Netgear | Rbk852 | - | All | All | All |
| Operating System | Netgear | Rbk852 Firmware | All | All | All | All |
| Hardware | Netgear | Rbr750 | - | All | All | All |
| Operating System | Netgear | Rbr750 Firmware | All | All | All | All |
| Hardware | Netgear | Rbr850 | - | All | All | All |
| Operating System | Netgear | Rbr850 Firmware | All | All | All | All |
| Hardware | Netgear | Rbs750 | - | All | All | All |
| Operating System | Netgear | Rbs750 Firmware | All | All | All | All |
| Hardware | Netgear | Rbs850 | - | All | All | All |
| Operating System | Netgear | Rbs850 Firmware | All | All | All | All |
| Hardware | Netgear | Rs400 | - | All | All | All |
| Operating System | Netgear | Rs400 Firmware | All | All | All | All |
| Hardware | Netgear | Xr1000 | - | All | All | All |
| Operating System | Netgear | Xr1000 Firmware | All | All | All | All |
| Hardware | Netgear | Xr300 | - | All | All | All |
| Operating System | Netgear | Xr300 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Pre-Authentication Command Injection on Some Routers, Extenders, and WiFi Systems, PSV-2020-0562 | Answer | NETGEAR Support | MISC | kb.netgear.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.