7.8
CVSSv3

CVE-2021-45602

Published: 26/12/2021 Updated: 12/07/2022
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 prior to 1.0.1.66, EX2700 prior to 1.0.1.68, WN3000RPv2 prior to 1.0.0.90, WN3000RPv3 prior to 1.0.2.100, LBR1020 prior to 2.6.5.20, LBR20 prior to 2.6.5.32, R6700AX prior to 1.0.10.110, R7800 prior to 1.0.2.86, R8900 prior to 1.0.5.38, R9000 prior to 1.0.5.38, RAX10 prior to 1.0.10.110, RAX120v1 prior to 1.2.3.28, RAX120v2 prior to 1.2.3.28, RAX70 prior to 1.0.10.110, RAX78 prior to 1.0.10.110, XR450 prior to 2.3.2.130, XR500 prior to 2.3.2.130, and XR700 prior to 1.0.1.46.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

netgear d7800 firmware

netgear ex2700 firmware

netgear wn3000rpv2 firmware

netgear wn3000rpv3 firmware

netgear lbr1020 firmware

netgear lbr20 firmware

netgear r6700ax firmware

netgear r7800 firmware

netgear r8900 firmware

netgear r9000 firmware

netgear rax10 firmware

netgear rax120v1 firmware

netgear rax120v2 firmware

netgear rax70 firmware

netgear rax78 firmware

netgear xr450 firmware

netgear xr500 firmware

netgear xr700 firmware