Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, EAX20 before 1.0.0.58, EAX80 before 1.0.1.68, EX7500 before 1.0.0.74, LAX20 before 1.1.6.28, MK62 before 1.0.6.116, MR60 before 1.0.6.116, MS60 before 1.0.6.116, R6400 before 1.0.1.70, R6400v2 before 1.0.4.118, R6700v3 before 1.0.4.118, R6900P before 1.3.3.140, R7000 before 1.0.11.116, R7000P before 1.3.3.140, R7850 before 1.0.5.68, R7900 before 1.0.4.38, R7900P before 1.4.2.84, R7960P before 1.4.2.84, R8000 before 1.0.4.68, R8000P before 1.4.2.84, RAX15 before 1.0.3.96, RAX20 before 1.0.3.96, RAX200 before 1.0.4.120, RAX35v2 before 1.0.3.96, RAX40v2 before 1.0.3.96, RAX43 before 1.0.3.96, RAX45 before 1.0.3.96, RAX50 before 1.0.3.96, RAX75 before 1.0.4.120, RAX80 before 1.0.4.120, RBK752 before 3.2.17.12, RBK852 before 3.2.17.12, RBR750 before 3.2.17.12, RBR850 before 3.2.17.12, RBS750 before 3.2.17.12, RBS850 before 3.2.17.12, RS400 before 1.5.1.80, XR1000 before 1.0.0.58, and XR300 before 1.0.3.68.

Project Subscriptions

Vendors Products
Netgear Subscribe
Cbr40 Firmware Subscribe
Cbr750 Firmware Subscribe
Eax20 Firmware Subscribe
Eax80 Firmware Subscribe
Ex7500 Firmware Subscribe
Lax20 Firmware Subscribe
Mk62 Firmware Subscribe
Mr60 Firmware Subscribe
Ms60 Firmware Subscribe
R6400 Firmware Subscribe
R6400v2 Subscribe
R6400v2 Firmware Subscribe
R6700v3 Subscribe
R6700v3 Firmware Subscribe
R6900p Firmware Subscribe
R7000 Firmware Subscribe
R7000p Firmware Subscribe
R7850 Firmware Subscribe
R7900 Firmware Subscribe
R7900p Firmware Subscribe
R7960p Firmware Subscribe
R8000 Firmware Subscribe
R8000p Firmware Subscribe
Rax15 Firmware Subscribe
Rax200 Firmware Subscribe
Rax20 Firmware Subscribe
Rax35v2 Subscribe
Rax35v2 Firmware Subscribe
Rax40v2 Subscribe
Rax40v2 Firmware Subscribe
Rax43 Firmware Subscribe
Rax45 Firmware Subscribe
Rax50 Firmware Subscribe
Rax75 Firmware Subscribe
Rax80 Firmware Subscribe
Rbk752 Firmware Subscribe
Rbk852 Firmware Subscribe
Rbr750 Firmware Subscribe
Rbr850 Firmware Subscribe
Rbs750 Firmware Subscribe
Rbs850 Firmware Subscribe
Rs400 Firmware Subscribe
Xr1000 Firmware Subscribe
Xr300 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-32388 Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, EAX20 before 1.0.0.58, EAX80 before 1.0.1.68, EX7500 before 1.0.0.74, LAX20 before 1.1.6.28, MK62 before 1.0.6.116, MR60 before 1.0.6.116, MS60 before 1.0.6.116, R6400 before 1.0.1.70, R6400v2 before 1.0.4.118, R6700v3 before 1.0.4.118, R6900P before 1.3.3.140, R7000 before 1.0.11.116, R7000P before 1.3.3.140, R7850 before 1.0.5.68, R7900 before 1.0.4.38, R7900P before 1.4.2.84, R7960P before 1.4.2.84, R8000 before 1.0.4.68, R8000P before 1.4.2.84, RAX15 before 1.0.3.96, RAX20 before 1.0.3.96, RAX200 before 1.0.4.120, RAX35v2 before 1.0.3.96, RAX40v2 before 1.0.3.96, RAX43 before 1.0.3.96, RAX45 before 1.0.3.96, RAX50 before 1.0.3.96, RAX75 before 1.0.4.120, RAX80 before 1.0.4.120, RBK752 before 3.2.17.12, RBK852 before 3.2.17.12, RBR750 before 3.2.17.12, RBR850 before 3.2.17.12, RBS750 before 3.2.17.12, RBS850 before 3.2.17.12, RS400 before 1.5.1.80, XR1000 before 1.0.0.58, and XR300 before 1.0.3.68.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T04:47:01.216Z

Reserved: 2021-12-25T00:00:00

Link: CVE-2021-45622

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-12-26T01:15:18.810

Modified: 2024-11-21T06:32:42.160

Link: CVE-2021-45622

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses