CVE-2021-38513
Last modified
CVE-2021-38513 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Certain NETGEAR devices are affected by authentication bypass. This affects RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, RBS850 before 3.2.10.11, CBR40 before 2.5.0.10, EAX20 before 1.0.0.48, MK62 before 1.0.6.110, MR60 before 1.0.6.110, MS60 before 1.0.6.110, RBK752 before 3.2.10.10, RBR750 before 3.2.10.10, and RBS750 before 3.2.10.10.. EPSS estimates a 1.83% chance of exploitation in the next 30 days.
Description
Certain NETGEAR devices are affected by authentication bypass. This affects RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, RBS850 before 3.2.10.11, CBR40 before 2.5.0.10, EAX20 before 1.0.0.48, MK62 before 1.0.6.110, MR60 before 1.0.6.110, MS60 before 1.0.6.110, RBK752 before 3.2.10.10, RBR750 before 3.2.10.10, and RBS750 before 3.2.10.10.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Netgear | Rbk852 Firmware | < 3.2.10.11 |
| Netgear | Rbr850 Firmware | < 3.2.10.11 |
| Netgear | Rbs850 Firmware | < 3.2.10.11 |
| Netgear | Cbr40 Firmware | < 2.5.0.10 |
| Netgear | Eax20 Firmware | < 1.0.0.48 |
| Netgear | Mk62 Firmware | < 1.0.6.110 |
| Netgear | Mr60 Firmware | < 1.0.6.110 |
| Netgear | Ms60 Firmware | < 1.0.6.110 |
| Netgear | Rbk752 Firmware | < 3.2.10.10 |
| Netgear | Rbr750 Firmware | < 3.2.10.10 |
| Netgear | Rbs750 Firmware | < 3.2.10.10 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-38513?
How severe is CVE-2021-38513?
How do I fix CVE-2021-38513?
Are you affected by CVE-2021-38513?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
