8.8

CVE-2021-45573

Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6260 before 1.1.0.76, R6800 before 1.2.0.62, R6700v2 before 1.2.0.62, R6900v2 before 1.2.0.62, R7450 before 1.2.0.62, AC2100 before 1.2.0.62, AC2400 before 1.2.0.62, and AC2600 before 1.2.0.62.

Data is provided by the National Vulnerability Database (NVD)
NetgearR6260 Firmware Version < 1.1.0.76
   NetgearR6260 Version-
NetgearR6800 Firmware Version < 1.2.0.62
   NetgearR6800 Version-
NetgearR6700 Firmware Version < 1.2.0.62
   NetgearR6700 Versionv2
NetgearR6900 Firmware Version < 1.2.0.62
   NetgearR6900 Versionv2
NetgearR7450 Firmware Version < 1.2.0.62
   NetgearR7450 Version-
NetgearAc2100 Firmware Version < 1.2.0.62
   NetgearAc2100 Version-
NetgearAc2400 Firmware Version < 1.2.0.62
   NetgearAc2400 Version-
NetgearAc2600 Firmware Version < 1.2.0.62
   NetgearAc2600 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.27% 0.474
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 5.8 6.5 6.4
AV:A/AC:L/Au:N/C:P/I:P/A:P
cve@mitre.org 8.3 2.8 5.5
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.