CVE-2021-45520

Severity
8.8HIGH
EPSS
0.1%
top 66.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 26
Latest updateDec 27

Description

Certain NETGEAR devices are affected by a hardcoded password. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HExploitability: 2.8 | Impact: 6.0

Affected Packages3 packages

NVDnetgear/rbk352_firmware< 4.4.0.10
NVDnetgear/rbr350_firmware< 4.4.0.10
NVDnetgear/rbs350_firmware< 4.4.0.10

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9cc4-3w36-v5r4: Certain NETGEAR devices are affected by a hardcoded password2021-12-27
CVEList
CVE-2021-45520: Certain NETGEAR devices are affected by a hardcoded password2021-12-26
CVE-2021-45520 (HIGH CVSS 8.8) | Certain NETGEAR devices are affecte | cvebase.io