Security Misconfiguration in NETGEAR Networking Devices
CVE-2021-45645

8.2HIGH

Key Information:

Vendor
Netgear
Vendor
CVE Published:
26 December 2021

Summary

Certain NETGEAR WiFi systems are exposed to risks due to an incorrect configuration of security settings. This vulnerability affects multiple models, including RBS50Y, SRK60, SRR60, SRS60, SXK30, SXR30, SXS30, and SRC60, prior to specified firmware updates. Users are advised to update their devices to the latest firmware versions to mitigate potential security threats. Refer to NETGEAR's security advisory for detailed guidance on securing affected devices.

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.