Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

CVE-2021-45602

CVSS 6.1 · Medium EPSS 0.10% · P26
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-45602

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.66, EX2700 before 1.0.1.68, WN3000RPv2 before 1.0.0.90, WN3000RPv3 before 1.0.2.100, LBR1020 before 2.6.5.20, LBR20 before 2.6.5.32, R6700AX before 1.0.10.110, R7800 before 1.0.2.86, R8900 before 1.0.5.38, R9000 before 1.0.5.38, RAX10 before 1.0.10.110, RAX120v1 before 1.2.3.28, RAX120v2 before 1.2.3.28, RAX70 before 1.0.10.110, RAX78 before 1.0.10.110, XR450 before 2.3.2.130, XR500 before 2.3.2.130, and XR700 before 1.0.1.46.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
NETGEAR 操作系统命令注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
NETGEAR是美国网件(NETGEAR)公司的一款路由器。连接两个或多个网络的硬件设备,在网络间起网关的作用。 某些 NETGEAR 设备存在操作系统命令注入漏洞,该漏洞源于某些NETGEAR设备会受到认证用户的命令回注的影响。影响1.0.1.66之前的D7800, 1.0.1.68之前的EX2700, 1.0.0.90之前的WN3000RPv2, 1.0.2.100之前的WN3000RPv3, 2.6.5.20之前的LBR1020, 2.6.5.32之前的LBR20, 1.0.10.110之前的R67
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2021-45602

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-45602

登录查看更多情报信息。

Security Blog Posts for CVE-2021-45602 (1)

Other References for CVE-2021-45602 (1)

Same Patch Batch · n/a · 2021-12-26 · 242 CVEs total

CVE-2021-4563010.0 CRITICALNetgear RBR750和NETGEAR 命令注入漏洞
CVE-2021-456179.8 CRITICALNetgear RBR750和NETGEAR 命令注入漏洞
CVE-2021-455029.6 CRITICALNetgear RBR750和NETGEAR 授权问题漏洞
CVE-2021-456549.6 CRITICALNetgear NETGEAR 信息泄露漏洞
CVE-2021-456529.6 CRITICALNetgear NETGEAR 信息泄露漏洞
CVE-2021-456389.6 CRITICALNetgear NETGEAR 缓冲区错误漏洞
CVE-2021-456359.6 CRITICALNetgear RBR750和NETGEAR 命令注入漏洞
CVE-2021-456349.6 CRITICALNetgear RBR750和NETGEAR 命令注入漏洞
CVE-2021-456339.6 CRITICALNetgear RBR750和NETGEAR 命令注入漏洞
CVE-2021-456329.6 CRITICALNetgear RBR750和NETGEAR 命令注入漏洞
CVE-2021-456319.6 CRITICALNetgear RBR750和NETGEAR 命令注入漏洞
CVE-2021-456299.6 CRITICALNETGEAR设备命令注入漏洞
CVE-2021-456289.6 CRITICALNetgear RBR750和NETGEAR 命令注入漏洞
CVE-2021-455009.6 CRITICALNetgear NETGEAR 授权问题漏洞
CVE-2021-455149.6 CRITICALNetgear NETGEAR 命令注入漏洞
CVE-2021-455099.6 CRITICALNetgear RBR750和NETGEAR 授权问题漏洞
CVE-2021-455139.6 CRITICALNetgear NETGEAR 命令注入漏洞
CVE-2021-455089.6 CRITICALNetgear RBR750和NETGEAR 授权问题漏洞
CVE-2021-455209.6 CRITICALNetgear NETGEAR 信任管理问题漏洞
CVE-2021-455279.6 CRITICALNetgear RBR750和NETGEAR 安全漏洞

Showing top 20 of 242 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2021-45602

No comments yet


Leave a comment