// For flags

CVE-2021-45658

 

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Certain NETGEAR devices are affected by server-side injection. This affects D7800 before 1.0.1.58, DM200 before 1.0.0.66, EX2700 before 1.0.1.56, EX6150v2 before 1.0.1.86, EX6100v2 before 1.0.1.86, EX6200v2 before 1.0.1.78, EX6250 before 1.0.0.110, EX6410 before 1.0.0.110, EX6420 before 1.0.0.110, EX6400v2 before 1.0.0.110, EX7300 before 1.0.2.144, EX6400 before 1.0.2.144, EX7320 before 1.0.0.110, EX7300v2 before 1.0.0.110, R7500v2 before 1.0.3.48, R7800 before 1.0.2.68, R8900 before 1.0.5.2, R9000 before 1.0.5.2, RAX120 before 1.0.1.90, RBK40 before 2.5.1.16, RBK20 before 2.5.1.16, RBR20 before 2.5.1.16, RBS20 before 2.5.1.16, RBK50 before 2.5.1.16, RBR50 before 2.5.1.16, RBS50 before 2.5.1.16, RBS50Y before 2.6.1.40, WN3000RPv2 before 1.0.0.78, WN3000RPv3 before 1.0.2.80, WNR2000v5 before 1.0.0.72, XR500 before 2.3.2.56, and XR700 before 1.0.1.20.

Determinados dispositivos NETGEAR están afectados por la inyección en el lado del servidor. Esto afecta al D7800 antes de 1.0.1.58, DM200 antes de 1.0.0.66, EX2700 antes de 1.0.1.56, EX6150v2 antes de 1.0.1.86, EX6100v2 antes de 1.0.1.86, EX6200v2 antes de 1.0.1.78, EX6250 antes de 1.0.0.110, EX6410 antes de 1.0.0.110, EX7300 antes de 1.0.0.110. 0.0.110, EX6420 antes de 1.0.0.110, EX6400v2 antes de 1.0.0.110, EX7300 antes de 1.0.2.144, EX6400 antes de 1.0.2.144, EX7320 antes de 1.0.0.110, EX7300v2 antes de 1.0.0.110, R7500v2 antes de 1.0.3.48, R7800 antes de 1. 0.2.68, R8900 antes de 1.0.5.2, R9000 antes de 1.0.5.2, RAX120 antes de 1.0.1.90, RBK40 antes de 2.5.1.16, RBK20 antes de 2.5.1.16, RBR20 antes de 2.5.1.16, RBS20 antes de 2.5.1.16, RBK50 antes de 2.5.1. 16, RBR50 antes de 2.5.1.16, RBS50 antes de 2.5.1.16, RBS50Y antes de 2.6.1.40, WN3000RPv2 antes de 1.0.0.78, WN3000RPv3 antes de 1.0.2.80, WNR2000v5 antes de 1.0.0.72, XR500 antes de 2.3.2.56 y XR700 antes de 1.0.1.20.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
None
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-12-25 CVE Reserved
  • 2021-12-26 CVE Published
  • 2024-08-04 CVE Updated
  • 2024-09-10 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Netgear
Search vendor "Netgear"
D7800 Firmware
Search vendor "Netgear" for product "D7800 Firmware"
< 1.0.1.58
Search vendor "Netgear" for product "D7800 Firmware" and version " < 1.0.1.58"
-
Affected
in Netgear
Search vendor "Netgear"
D7800
Search vendor "Netgear" for product "D7800"
--
Safe
Netgear
Search vendor "Netgear"
Dm200 Firmware
Search vendor "Netgear" for product "Dm200 Firmware"
< 1.0.0.66
Search vendor "Netgear" for product "Dm200 Firmware" and version " < 1.0.0.66"
-
Affected
in Netgear
Search vendor "Netgear"
Dm200
Search vendor "Netgear" for product "Dm200"
--
Safe
Netgear
Search vendor "Netgear"
Ex2700 Firmware
Search vendor "Netgear" for product "Ex2700 Firmware"
< 1.0.1.56
Search vendor "Netgear" for product "Ex2700 Firmware" and version " < 1.0.1.56"
-
Affected
in Netgear
Search vendor "Netgear"
Ex2700
Search vendor "Netgear" for product "Ex2700"
--
Safe
Netgear
Search vendor "Netgear"
Ex6150v2 Firmware
Search vendor "Netgear" for product "Ex6150v2 Firmware"
< 1.0.1.86
Search vendor "Netgear" for product "Ex6150v2 Firmware" and version " < 1.0.1.86"
-
Affected
in Netgear
Search vendor "Netgear"
Ex6150v2
Search vendor "Netgear" for product "Ex6150v2"
--
Safe
Netgear
Search vendor "Netgear"
Ex6100v2 Firmware
Search vendor "Netgear" for product "Ex6100v2 Firmware"
< 1.0.1.86
Search vendor "Netgear" for product "Ex6100v2 Firmware" and version " < 1.0.1.86"
-
Affected
in Netgear
Search vendor "Netgear"
Ex6100v2
Search vendor "Netgear" for product "Ex6100v2"
--
Safe
Netgear
Search vendor "Netgear"
Ex6200v2 Firmware
Search vendor "Netgear" for product "Ex6200v2 Firmware"
< 1.0.1.78
Search vendor "Netgear" for product "Ex6200v2 Firmware" and version " < 1.0.1.78"
-
Affected
in Netgear
Search vendor "Netgear"
Ex6200v2
Search vendor "Netgear" for product "Ex6200v2"
--
Safe
Netgear
Search vendor "Netgear"
Ex6250 Firmware
Search vendor "Netgear" for product "Ex6250 Firmware"
< 1.0.0.110
Search vendor "Netgear" for product "Ex6250 Firmware" and version " < 1.0.0.110"
-
Affected
in Netgear
Search vendor "Netgear"
Ex6250
Search vendor "Netgear" for product "Ex6250"
--
Safe
Netgear
Search vendor "Netgear"
Ex6410 Firmware
Search vendor "Netgear" for product "Ex6410 Firmware"
< 1.0.0.110
Search vendor "Netgear" for product "Ex6410 Firmware" and version " < 1.0.0.110"
-
Affected
in Netgear
Search vendor "Netgear"
Ex6410
Search vendor "Netgear" for product "Ex6410"
--
Safe
Netgear
Search vendor "Netgear"
Ex6420 Firmware
Search vendor "Netgear" for product "Ex6420 Firmware"
< 1.0.0.110
Search vendor "Netgear" for product "Ex6420 Firmware" and version " < 1.0.0.110"
-
Affected
in Netgear
Search vendor "Netgear"
Ex6420
Search vendor "Netgear" for product "Ex6420"
--
Safe
Netgear
Search vendor "Netgear"
Ex6400v2 Firmware
Search vendor "Netgear" for product "Ex6400v2 Firmware"
< 1.0.0.110
Search vendor "Netgear" for product "Ex6400v2 Firmware" and version " < 1.0.0.110"
-
Affected
in Netgear
Search vendor "Netgear"
Ex6400v2
Search vendor "Netgear" for product "Ex6400v2"
--
Safe
Netgear
Search vendor "Netgear"
Ex7300 Firmware
Search vendor "Netgear" for product "Ex7300 Firmware"
< 1.0.2.144
Search vendor "Netgear" for product "Ex7300 Firmware" and version " < 1.0.2.144"
-
Affected
in Netgear
Search vendor "Netgear"
Ex7300
Search vendor "Netgear" for product "Ex7300"
--
Safe
Netgear
Search vendor "Netgear"
Ex6400 Firmware
Search vendor "Netgear" for product "Ex6400 Firmware"
< 1.0.2.144
Search vendor "Netgear" for product "Ex6400 Firmware" and version " < 1.0.2.144"
-
Affected
in Netgear
Search vendor "Netgear"
Ex6400
Search vendor "Netgear" for product "Ex6400"
--
Safe
Netgear
Search vendor "Netgear"
Ex7320 Firmware
Search vendor "Netgear" for product "Ex7320 Firmware"
< 1.0.0.110
Search vendor "Netgear" for product "Ex7320 Firmware" and version " < 1.0.0.110"
-
Affected
in Netgear
Search vendor "Netgear"
Ex7320
Search vendor "Netgear" for product "Ex7320"
--
Safe
Netgear
Search vendor "Netgear"
Ex7300v2 Firmware
Search vendor "Netgear" for product "Ex7300v2 Firmware"
< 1.0.0.110
Search vendor "Netgear" for product "Ex7300v2 Firmware" and version " < 1.0.0.110"
-
Affected
in Netgear
Search vendor "Netgear"
Ex7300v2
Search vendor "Netgear" for product "Ex7300v2"
--
Safe
Netgear
Search vendor "Netgear"
R7500v2 Firmware
Search vendor "Netgear" for product "R7500v2 Firmware"
< 1.0.3.48
Search vendor "Netgear" for product "R7500v2 Firmware" and version " < 1.0.3.48"
-
Affected
in Netgear
Search vendor "Netgear"
R7500v2
Search vendor "Netgear" for product "R7500v2"
--
Safe
Netgear
Search vendor "Netgear"
R7800 Firmware
Search vendor "Netgear" for product "R7800 Firmware"
< 1.0.2.68
Search vendor "Netgear" for product "R7800 Firmware" and version " < 1.0.2.68"
-
Affected
in Netgear
Search vendor "Netgear"
R7800
Search vendor "Netgear" for product "R7800"
--
Safe
Netgear
Search vendor "Netgear"
R8900 Firmware
Search vendor "Netgear" for product "R8900 Firmware"
< 1.0.5.2
Search vendor "Netgear" for product "R8900 Firmware" and version " < 1.0.5.2"
-
Affected
in Netgear
Search vendor "Netgear"
R8900
Search vendor "Netgear" for product "R8900"
--
Safe
Netgear
Search vendor "Netgear"
R9000 Firmware
Search vendor "Netgear" for product "R9000 Firmware"
< 1.0.5.2
Search vendor "Netgear" for product "R9000 Firmware" and version " < 1.0.5.2"
-
Affected
in Netgear
Search vendor "Netgear"
R9000
Search vendor "Netgear" for product "R9000"
--
Safe
Netgear
Search vendor "Netgear"
Rax120 Firmware
Search vendor "Netgear" for product "Rax120 Firmware"
< 1.0.1.90
Search vendor "Netgear" for product "Rax120 Firmware" and version " < 1.0.1.90"
-
Affected
in Netgear
Search vendor "Netgear"
Rax120
Search vendor "Netgear" for product "Rax120"
--
Safe
Netgear
Search vendor "Netgear"
Rbk40 Firmware
Search vendor "Netgear" for product "Rbk40 Firmware"
< 2.5.1.16
Search vendor "Netgear" for product "Rbk40 Firmware" and version " < 2.5.1.16"
-
Affected
in Netgear
Search vendor "Netgear"
Rbk40
Search vendor "Netgear" for product "Rbk40"
--
Safe
Netgear
Search vendor "Netgear"
Rbk20 Firmware
Search vendor "Netgear" for product "Rbk20 Firmware"
< 2.5.1.16
Search vendor "Netgear" for product "Rbk20 Firmware" and version " < 2.5.1.16"
-
Affected
in Netgear
Search vendor "Netgear"
Rbk20
Search vendor "Netgear" for product "Rbk20"
--
Safe
Netgear
Search vendor "Netgear"
Rbr20 Firmware
Search vendor "Netgear" for product "Rbr20 Firmware"
< 2.5.1.16
Search vendor "Netgear" for product "Rbr20 Firmware" and version " < 2.5.1.16"
-
Affected
in Netgear
Search vendor "Netgear"
Rbr20
Search vendor "Netgear" for product "Rbr20"
--
Safe
Netgear
Search vendor "Netgear"
Rbs20 Firmware
Search vendor "Netgear" for product "Rbs20 Firmware"
< 2.5.1.16
Search vendor "Netgear" for product "Rbs20 Firmware" and version " < 2.5.1.16"
-
Affected
in Netgear
Search vendor "Netgear"
Rbs20
Search vendor "Netgear" for product "Rbs20"
--
Safe
Netgear
Search vendor "Netgear"
Rbk50 Firmware
Search vendor "Netgear" for product "Rbk50 Firmware"
< 2.5.1.16
Search vendor "Netgear" for product "Rbk50 Firmware" and version " < 2.5.1.16"
-
Affected
in Netgear
Search vendor "Netgear"
Rbk50
Search vendor "Netgear" for product "Rbk50"
--
Safe
Netgear
Search vendor "Netgear"
Rbr50 Firmware
Search vendor "Netgear" for product "Rbr50 Firmware"
< 2.5.1.16
Search vendor "Netgear" for product "Rbr50 Firmware" and version " < 2.5.1.16"
-
Affected
in Netgear
Search vendor "Netgear"
Rbr50
Search vendor "Netgear" for product "Rbr50"
--
Safe
Netgear
Search vendor "Netgear"
Rbs50 Firmware
Search vendor "Netgear" for product "Rbs50 Firmware"
< 2.5.1.16
Search vendor "Netgear" for product "Rbs50 Firmware" and version " < 2.5.1.16"
-
Affected
in Netgear
Search vendor "Netgear"
Rbs50
Search vendor "Netgear" for product "Rbs50"
--
Safe
Netgear
Search vendor "Netgear"
Rbs50y Firmware
Search vendor "Netgear" for product "Rbs50y Firmware"
< 2.6.1.40
Search vendor "Netgear" for product "Rbs50y Firmware" and version " < 2.6.1.40"
-
Affected
in Netgear
Search vendor "Netgear"
Rbs50y
Search vendor "Netgear" for product "Rbs50y"
--
Safe
Netgear
Search vendor "Netgear"
Wn3000rpv2 Firmware
Search vendor "Netgear" for product "Wn3000rpv2 Firmware"
< 1.0.0.78
Search vendor "Netgear" for product "Wn3000rpv2 Firmware" and version " < 1.0.0.78"
-
Affected
in Netgear
Search vendor "Netgear"
Wn3000rpv2
Search vendor "Netgear" for product "Wn3000rpv2"
--
Safe
Netgear
Search vendor "Netgear"
Wn3000rpv3 Firmware
Search vendor "Netgear" for product "Wn3000rpv3 Firmware"
< 1.0.2.80
Search vendor "Netgear" for product "Wn3000rpv3 Firmware" and version " < 1.0.2.80"
-
Affected
in Netgear
Search vendor "Netgear"
Wn3000rpv3
Search vendor "Netgear" for product "Wn3000rpv3"
--
Safe
Netgear
Search vendor "Netgear"
Wnr2000v5 Firmware
Search vendor "Netgear" for product "Wnr2000v5 Firmware"
< 1.0.0.72
Search vendor "Netgear" for product "Wnr2000v5 Firmware" and version " < 1.0.0.72"
-
Affected
in Netgear
Search vendor "Netgear"
Wnr2000v5
Search vendor "Netgear" for product "Wnr2000v5"
--
Safe
Netgear
Search vendor "Netgear"
Xr500 Firmware
Search vendor "Netgear" for product "Xr500 Firmware"
< 2.3.2.56
Search vendor "Netgear" for product "Xr500 Firmware" and version " < 2.3.2.56"
-
Affected
in Netgear
Search vendor "Netgear"
Xr500
Search vendor "Netgear" for product "Xr500"
--
Safe
Netgear
Search vendor "Netgear"
Xr700 Firmware
Search vendor "Netgear" for product "Xr700 Firmware"
< 1.0.1.20
Search vendor "Netgear" for product "Xr700 Firmware" and version " < 1.0.1.20"
-
Affected
in Netgear
Search vendor "Netgear"
Xr700
Search vendor "Netgear" for product "Xr700"
--
Safe