← Back

CVE-2021-38528

nvd nist
Published: Aug 11, 2021Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D8500 before 1.0.3.58, R6900P before 1.3.2.132, R7000P before 1.3.2.132, R7100LG before 1.0.0.64, WNDR3400v3 before 1.0.1.38, and XR300 before 1.0.3.56.

Affected (6)

6 products
D8500 Firmware
R6900p Firmware
R7000p Firmware
R7100lg Firmware
Wndr3400 Firmware
Xr300 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.0.3.58
Running on/withPlatform Versions
Netgear
D8500
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.3.2.132
Running on/withPlatform Versions
Netgear
R6900p
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.3.2.132
Running on/withPlatform Versions
Netgear
R7000p
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.0.0.64
Running on/withPlatform Versions
Netgear
R7100lg
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.0.1.38
Running on/withPlatform Versions
Netgear
Wndr3400
Version v3
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.0.3.56
Running on/withPlatform Versions
Netgear
Xr300
All versions

Timeline

No history available yet.