Metrics
No CVSS v4.0
Attack Vector Adjacent Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact None
User Interaction None
No CVSS v3.0
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact Complete
Integrity Impact Complete
Availability Impact Complete
This CVE is not in the KEV list.
The EPSS score is 0.02457.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Netgear
Subscribe
|
Cbr40
Subscribe
Cbr40 Firmware
Subscribe
Ex6100
Subscribe
Ex6100 Firmware
Subscribe
Ex6150
Subscribe
Ex6150 Firmware
Subscribe
Ex6250
Subscribe
Ex6250 Firmware
Subscribe
Ex6400
Subscribe
Ex6400 Firmware
Subscribe
Ex6410
Subscribe
Ex6410 Firmware
Subscribe
Ex6420
Subscribe
Ex6420 Firmware
Subscribe
Ex7300
Subscribe
Ex7300 Firmware
Subscribe
Ex7320
Subscribe
Ex7320 Firmware
Subscribe
Ex7700
Subscribe
Ex7700 Firmware
Subscribe
Ex8000
Subscribe
Ex8000 Firmware
Subscribe
R7800
Subscribe
R7800 Firmware
Subscribe
Rbk12
Subscribe
Rbk12 Firmware
Subscribe
Rbk20
Subscribe
Rbk20 Firmware
Subscribe
Rbk40
Subscribe
Rbk40 Firmware
Subscribe
Rbk50
Subscribe
Rbk50 Firmware
Subscribe
Rbk752
Subscribe
Rbk752 Firmware
Subscribe
Rbk852
Subscribe
Rbk852 Firmware
Subscribe
Rbr10
Subscribe
Rbr10 Firmware
Subscribe
Rbr20
Subscribe
Rbr20 Firmware
Subscribe
Rbr40
Subscribe
Rbr40 Firmware
Subscribe
Rbr50
Subscribe
Rbr50 Firmware
Subscribe
Rbr750
Subscribe
Rbr750 Firmware
Subscribe
Rbr850
Subscribe
Rbr850 Firmware
Subscribe
Rbs10
Subscribe
Rbs10 Firmware
Subscribe
Rbs20
Subscribe
Rbs20 Firmware
Subscribe
Rbs40
Subscribe
Rbs40 Firmware
Subscribe
Rbs40v
Subscribe
Rbs40v Firmware
Subscribe
Rbs50
Subscribe
Rbs50 Firmware
Subscribe
Rbs50y
Subscribe
Rbs50y Firmware
Subscribe
Rbs750
Subscribe
Rbs750 Firmware
Subscribe
Rbs850
Subscribe
Rbs850 Firmware
Subscribe
Rbw30
Subscribe
Rbw30 Firmware
Subscribe
Xr500
Subscribe
Xr500 Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
Configuration 23 [-]
| AND |
|
Configuration 24 [-]
| AND |
|
Configuration 25 [-]
| AND |
|
Configuration 26 [-]
| AND |
|
Configuration 27 [-]
| AND |
|
Configuration 28 [-]
| AND |
|
Configuration 29 [-]
| AND |
|
Configuration 30 [-]
| AND |
|
Configuration 31 [-]
| AND |
|
Configuration 32 [-]
| AND |
|
Configuration 33 [-]
| AND |
|
Configuration 34 [-]
| AND |
|
Configuration 35 [-]
| AND |
|
Configuration 36 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-24977 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.14, EX6100v2 before 1.0.1.98, EX6150v2 before 1.0.1.98, EX6250 before 1.0.0.132, EX6400 before 1.0.2.158, EX6400v2 before 1.0.0.132, EX6410 before 1.0.0.132, EX6420 before 1.0.0.132, EX7300 before 1.0.2.158, EX7300v2 before 1.0.0.132, EX7320 before 1.0.0.132, EX7700 before 1.0.0.216, EX8000 before 1.0.1.232, R7800 before 1.0.2.78, RBK12 before 2.6.1.44, RBR10 before 2.6.1.44, RBS10 before 2.6.1.44, RBK20 before 2.6.1.38, RBR20 before 2.6.1.36, RBS20 before 2.6.1.38, RBK40 before 2.6.1.38, RBR40 before 2.6.1.36, RBS40 before 2.6.1.38, RBK50 before 2.6.1.40, RBR50 before 2.6.1.40, RBS50 before 2.6.1.40, RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, RBS850 before 3.2.16.6, RBS40V before 2.6.2.4, RBS50Y before 2.6.1.40, RBW30 before 2.6.2.2, and XR500 before 2.3.2.114. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T01:44:23.463Z
Reserved: 2021-08-10T00:00:00
Link: CVE-2021-38527
No data.
Status : Modified
Published: 2021-08-11T00:16:18.947
Modified: 2024-11-21T06:17:20.593
Link: CVE-2021-38527
No data.
OpenCVE Enrichment
No data.
EUVD