Server-Side Injection Vulnerability in NETGEAR Routers and Extenders
CVE-2021-45658
7.1HIGH
Summary
Several NETGEAR routers and extenders are susceptible to a server-side injection vulnerability. This type of flaw allows an attacker to manipulate server-side operations by injecting malicious commands, potentially compromising the integrity of the device. It affects a range of NETGEAR devices, with specific versions being more vulnerable, making it crucial for users to update their firmware to mitigate security risks. Detailed information about the affected devices can be found in the NETGEAR security advisory.
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved