PT-2021-5887 · NetGear · Netgear R7450+16

Published

2021-08-27

·

Updated

2024-09-21

·

CVE-2021-45511

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions NETGEAR AC2100 versions prior to 2021-08-27 NETGEAR AC2400 versions prior to 2021-08-27 NETGEAR AC2600 versions prior to 2021-08-27 NETGEAR D7000 versions prior to 2021-08-27 NETGEAR R6220 versions prior to 2021-08-27 NETGEAR R6230 versions prior to 2021-08-27 NETGEAR R6260 versions prior to 2021-08-27 NETGEAR R6330 versions prior to 2021-08-27 NETGEAR R6350 versions prior to 2021-08-27 NETGEAR R6700v2 versions prior to 2021-08-27 NETGEAR R6800 versions prior to 2021-08-27 NETGEAR R6850 versions prior to 2021-08-27 NETGEAR R6900v2 versions prior to 2021-08-27 NETGEAR R7200 versions prior to 2021-08-27 NETGEAR R7350 versions prior to 2021-08-27 NETGEAR R7400 versions prior to 2021-08-27 NETGEAR R7450 versions prior to 2021-08-27
Description The issue is related to authentication bypass in NETGEAR devices, which can be exploited by a remote attacker to bypass security restrictions. This is due to deficiencies in the authentication mechanism.
Recommendations For NETGEAR AC2100 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR AC2400 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR AC2600 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR D7000 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6220 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6230 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6260 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6330 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6350 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6700v2 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6800 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6850 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R6900v2 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R7200 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R7350 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R7400 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27. For NETGEAR R7450 versions prior to 2021-08-27, update the firmware to a version released after 2021-08-27.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

BDU:2022-00402
CVE-2021-45511

Affected Products

Netgear Ac2100
Netgear Ac2400
Netgear Ac2600
Netgear R7000
Netgear R6220
Netgear R6230
Netgear R6260
Netgear R6330
Netgear R6350
Netgear R6700V2
Netgear R6800
Netgear R6850
Netgear R6900V2
Netgear R7200
Netgear R7350
Netgear R7400
Netgear R7450