Vulnerability Description
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects DC112A before 1.0.0.52, R6400 before 1.0.1.68, RAX200 before 1.0.3.106, WNDR3400v3 before 1.0.1.38, XR300 before 1.0.3.68, R8500 before 1.0.2.144, RAX75 before 1.0.3.106, R8300 before 1.0.2.144, and RAX80 before 1.0.3.106.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netgear | Dc112A Firmware | < 1.0.0.52 |
| Netgear | Dc112A | - |
| Netgear | R6400 Firmware | < 1.0.1.68 |
| Netgear | R6400 | - |
| Netgear | R8300 Firmware | < 1.0.2.144 |
| Netgear | R8300 | - |
| Netgear | R8500 Firmware | < 1.0.2.144 |
| Netgear | R8500 | - |
| Netgear | Wndr3400V3 Firmware | < 1.0.1.38 |
| Netgear | Wndr3400V3 | - |
| Netgear | Xr300 Firmware | < 1.0.3.68 |
| Netgear | Xr300 | - |
| Netgear | Rax200 Firmware | < 1.0.3.106 |
| Netgear | Rax200 | - |
| Netgear | Rax75 Firmware | < 1.0.3.106 |
| Netgear | Rax75 | - |
| Netgear | Rax80 Firmware | < 1.0.3.106 |
| Netgear | Rax80 | - |
Related Weaknesses (CWE)
References
- https://kb.netgear.com/000064488/Security-Advisory-for-Pre-Authentication-BufferPatchVendor Advisory
- https://kb.netgear.com/000064488/Security-Advisory-for-Pre-Authentication-BufferPatchVendor Advisory
FAQ
What is CVE-2021-45611?
CVE-2021-45611 is a vulnerability with a CVSS score of 9.6 (CRITICAL). Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects DC112A before 1.0.0.52, R6400 before 1.0.1.68, RAX200 before 1.0.3.106, WNDR3400v3 before 1.0.1.3...
How severe is CVE-2021-45611?
CVE-2021-45611 has been rated CRITICAL with a CVSS base score of 9.6/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-45611?
Check the references section above for vendor advisories and patch information. Affected products include: Netgear Dc112A Firmware, Netgear Dc112A, Netgear R6400 Firmware, Netgear R6400, Netgear R8300 Firmware.