CVE-2021-45573

EUVD-2021-32339
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6260 before 1.1.0.76, R6800 before 1.2.0.62, R6700v2 before 1.2.0.62, R6900v2 before 1.2.0.62, R7450 before 1.2.0.62, AC2100 before 1.2.0.62, AC2400 before 1.2.0.62, and AC2600 before 1.2.0.62.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.3 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
mitreCNA
8.3 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AC:L/AV:A/A:L/C:H/I:H/PR:N/S:U/UI:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 33%
Affected Products (NVD)
VendorProductVersion
netgearr6260_firmware
𝑥
< 1.1.0.76
netgearr6800_firmware
𝑥
< 1.2.0.62
netgearr6700_firmware
𝑥
< 1.2.0.62
netgearr6900_firmware
𝑥
< 1.2.0.62
netgearr7450_firmware
𝑥
< 1.2.0.62
netgearac2100_firmware
𝑥
< 1.2.0.62
netgearac2400_firmware
𝑥
< 1.2.0.62
netgearac2600_firmware
𝑥
< 1.2.0.62
𝑥
= Vulnerable software versions