← Back to CVE List
Vulnerability Intelligence Report

CVE-2021-45556

Certain NETGEAR devices are affected by command injection by an authenticated user. This affects GS108Tv2 before 5.4.2.36, GS110TPP before 7.0.7.2, GS110TPv2 before 5.4.2.36., GS110TPv3 before 7.0.7.2, GS308T before 1.0.3.2, GS310TP before 1.0.3.2, GS724TPP before 2.0.6.3, GS724TPv2 before 2.0.6.3, GS728TPPv2 before 6.0.8.2, GS728TPv2 before 6.0.8.2, GS752TPP before 6.0.8.2, GS752TPv2 before 6.0.8.2, MS510TXM before 1.0.4.2, and MS510TXUP before 1.0.4.2.

No Active Exploit Signals
CVSS Base Score
7.5
HIGH
Exploitability:1.0
Impact Score:6.0
EPSS Probability:1.22%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
netgear gs108tv2_firmware all
netgear gs108tv2 all
netgear gs110tpp_firmware all
netgear gs110tpp all
netgear gs110tpv2_firmware all
netgear gs110tpv2 all
netgear gs308t_firmware all
netgear gs308t all
netgear gs110tpv3_firmware all
netgear gs110tpv3 all
netgear gs310tp_firmware all
netgear gs310tp all
netgear gs724tpp_firmware all
netgear gs724tpp all
netgear gs724tpv2_firmware all
netgear gs724tpv2 all
netgear gs728tppv2_firmware all
netgear gs728tppv2 all
netgear gs728tpv2_firmware all
netgear gs728tpv2 all
netgear gs752tpp_firmware all
netgear gs752tpp all
netgear gs752tpv2_firmware all
netgear gs752tpv2 all
netgear ms510txm_firmware all
netgear ms510txm all
netgear ms510txup_firmware all
netgear ms510txup all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
1.222%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2021-12-25T00:00:00
Published2021-12-26T00:50:54
Last Updated2024-08-04T04:47:00

LINK COPIED TO CLIPBOARD