Command Injection Vulnerability in Multiple NETGEAR Devices
CVE-2021-45602

6.1MEDIUM

Key Information:

Vendor
Netgear
Vendor
CVE Published:
26 December 2021

Summary

Certain NETGEAR devices are susceptible to command injection vulnerabilities that can be exploited by an authenticated user. This security issue affects multiple models, including older firmware versions, making it critical for users to apply necessary updates. The exploitation of this vulnerability may lead to unauthorized command execution, compromising device integrity and user data security. Regularly updating firmware and monitoring network devices are essential steps for maintaining robust cybersecurity.

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.