// For flags

CVE-2021-45675

 

Severity Score

4.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Certain NETGEAR devices are affected by stored XSS. This affects R6120 before 1.0.0.76, R6260 before 1.1.0.78, R6850 before 1.1.0.78, R6350 before 1.1.0.78, R6330 before 1.1.0.78, R6800 before 1.2.0.76, R6700v2 before 1.2.0.76, R6900v2 before 1.2.0.76, R7200 before 1.2.0.76, R7350 before 1.2.0.76, R7400 before 1.2.0.76, R7450 before 1.2.0.76, AC2100 before 1.2.0.76, AC2400 before 1.2.0.76, and AC2600 before 1.2.0.76.

Determinados dispositivos NETGEAR están afectados por un ataque de tipo XSS almacenado. Esto afecta a R6120 versiones anteriores a 1.0.0.76, a R6260 versiones anteriores a 1.1.0.78, a R6850 versiones anteriores a 1.1.0.78, a R6350 versiones anteriores a 1.1.0.78, a R6330 versiones anteriores a 1.1.0.78, a R6800 versiones anteriores a 1.2.0.76, a R6700v2 versiones anteriores a 1.2.0.76, a R6900v2 versiones anteriores a 1. 2.0.76, R7200 versiones anteriores a 1.2.0.76, R7350 versiones anteriores a 1.2.0.76, R7400 versiones anteriores a 1.2.0.76, R7450 versiones anteriores a 1.2.0.76, AC2100 versiones anteriores a 1.2.0.76, AC2400 versiones anteriores a 1.2.0.76 y AC2600 versiones anteriores a 1.2.0.76

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None
Attack Vector
Local
Attack Complexity
High
Privileges Required
High
User Interaction
Required
Scope
Changed
Confidentiality
High
Integrity
Low
Availability
None
Attack Vector
Local
Attack Complexity
High
Privileges Required
High
User Interaction
Required
Scope
Changed
Confidentiality
High
Integrity
Low
Availability
None
Attack Vector
Network
Attack Complexity
Medium
Authentication
Single
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-12-25 CVE Reserved
  • 2021-12-26 CVE Published
  • 2023-07-18 EPSS Updated
  • 2024-08-04 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Netgear
Search vendor "Netgear"
R6120 Firmware
Search vendor "Netgear" for product "R6120 Firmware"
< 1.0.0.76
Search vendor "Netgear" for product "R6120 Firmware" and version " < 1.0.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
R6120
Search vendor "Netgear" for product "R6120"
--
Safe
Netgear
Search vendor "Netgear"
R6260 Firmware
Search vendor "Netgear" for product "R6260 Firmware"
< 1.1.0.78
Search vendor "Netgear" for product "R6260 Firmware" and version " < 1.1.0.78"
-
Affected
in Netgear
Search vendor "Netgear"
R6260
Search vendor "Netgear" for product "R6260"
--
Safe
Netgear
Search vendor "Netgear"
R6850 Firmware
Search vendor "Netgear" for product "R6850 Firmware"
< 1.1.0.78
Search vendor "Netgear" for product "R6850 Firmware" and version " < 1.1.0.78"
-
Affected
in Netgear
Search vendor "Netgear"
R6850
Search vendor "Netgear" for product "R6850"
--
Safe
Netgear
Search vendor "Netgear"
R6350 Firmware
Search vendor "Netgear" for product "R6350 Firmware"
< 1.1.0.78
Search vendor "Netgear" for product "R6350 Firmware" and version " < 1.1.0.78"
-
Affected
in Netgear
Search vendor "Netgear"
R6350
Search vendor "Netgear" for product "R6350"
--
Safe
Netgear
Search vendor "Netgear"
R6330 Firmware
Search vendor "Netgear" for product "R6330 Firmware"
< 1.1.0.78
Search vendor "Netgear" for product "R6330 Firmware" and version " < 1.1.0.78"
-
Affected
in Netgear
Search vendor "Netgear"
R6330
Search vendor "Netgear" for product "R6330"
--
Safe
Netgear
Search vendor "Netgear"
R6800 Firmware
Search vendor "Netgear" for product "R6800 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "R6800 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
R6800
Search vendor "Netgear" for product "R6800"
--
Safe
Netgear
Search vendor "Netgear"
R6700v2 Firmware
Search vendor "Netgear" for product "R6700v2 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "R6700v2 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
R6700v2
Search vendor "Netgear" for product "R6700v2"
--
Safe
Netgear
Search vendor "Netgear"
R6900v2 Firmware
Search vendor "Netgear" for product "R6900v2 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "R6900v2 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
R6900v2
Search vendor "Netgear" for product "R6900v2"
--
Safe
Netgear
Search vendor "Netgear"
R7200 Firmware
Search vendor "Netgear" for product "R7200 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "R7200 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
R7200
Search vendor "Netgear" for product "R7200"
--
Safe
Netgear
Search vendor "Netgear"
R7350 Firmware
Search vendor "Netgear" for product "R7350 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "R7350 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
R7350
Search vendor "Netgear" for product "R7350"
--
Safe
Netgear
Search vendor "Netgear"
R7400 Firmware
Search vendor "Netgear" for product "R7400 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "R7400 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
R7400
Search vendor "Netgear" for product "R7400"
--
Safe
Netgear
Search vendor "Netgear"
R7450 Firmware
Search vendor "Netgear" for product "R7450 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "R7450 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
R7450
Search vendor "Netgear" for product "R7450"
--
Safe
Netgear
Search vendor "Netgear"
Ac2100 Firmware
Search vendor "Netgear" for product "Ac2100 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "Ac2100 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
Ac2100
Search vendor "Netgear" for product "Ac2100"
--
Safe
Netgear
Search vendor "Netgear"
Ac2400 Firmware
Search vendor "Netgear" for product "Ac2400 Firmware"
1.2.0.76
Search vendor "Netgear" for product "Ac2400 Firmware" and version "1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
Ac2400
Search vendor "Netgear" for product "Ac2400"
--
Safe
Netgear
Search vendor "Netgear"
Ac2600 Firmware
Search vendor "Netgear" for product "Ac2600 Firmware"
< 1.2.0.76
Search vendor "Netgear" for product "Ac2600 Firmware" and version " < 1.2.0.76"
-
Affected
in Netgear
Search vendor "Netgear"
Ac2600
Search vendor "Netgear" for product "Ac2600"
--
Safe