CVE-2021-45556
Status: ModifiedHigh (8.8)—
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects GS108Tv2 before 5.4.2.36, GS110TPP before 7.0.7.2, GS110TPv2 before 5.4.2.36., GS110TPv3 before 7.0.7.2, GS308T before 1.0.3.2, GS310TP before 1.0.3.2, GS724TPP before 2.0.6.3, GS724TPv2 before 2.0.6.3, GS728TPPv2 before 6.0.8.2, GS728TPv2 before 6.0.8.2, GS752TPP before 6.0.8.2, GS752TPv2 before 6.0.8.2, MS510TXM before 1.0.4.2, and MS510TXUP before 1.0.4.2.
CVSS
- Version: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Base score: 8.8
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 1.22%
- Percentile among all scored CVEs: 68
- Score date: 10/5/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (14)
Netgear — Gs108tv2 FirmwareNetgear — Gs110tpp FirmwareNetgear — Gs110tpv2 FirmwareNetgear — Gs110tpv3 FirmwareNetgear — Gs308t FirmwareNetgear — Gs310tp FirmwareNetgear — Gs724tpp FirmwareNetgear — Gs724tpv2 FirmwareNetgear — Gs728tppv2 FirmwareNetgear — Gs728tpv2 FirmwareNetgear — Gs752tpp FirmwareNetgear — Gs752tpv2 FirmwareNetgear — Ms510txm FirmwareNetgear — Ms510txup Firmware
CWEs
- CWE-77
References
Raw JSON (NVD)
Show
{
"id": "CVE-2021-45556",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 6.5,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
"authentication": "SINGLE",
"integrityImpact": "PARTIAL",
"accessComplexity": "LOW",
"availabilityImpact": "PARTIAL",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 6.4,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 8,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "cve@mitre.org",
"cvssData": {
"scope": "CHANGED",
"version": "3.1",
"baseScore": 7.5,
"attackVector": "ADJACENT_NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:C/C:L/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "HIGH",
"availabilityImpact": "HIGH",
"privilegesRequired": "HIGH",
"confidentialityImpact": "LOW"
},
"impactScore": 6,
"exploitabilityScore": 1
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 8.8,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "LOW",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 2.8
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2021-12-26T01:15:15.660",
"references": [
{
"url": "https://kb.netgear.com/000064534/Security-Advisory-for-Post-Authentication-Command-Injection-on-Some-Smart-Managed-Pro-Switches-PSV-2021-0175",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "https://kb.netgear.com/000064534/Security-Advisory-for-Post-Authentication-Command-Injection-on-Some-Smart-Managed-Pro-Switches-PSV-2021-0175",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-77"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects GS108Tv2 before 5.4.2.36, GS110TPP before 7.0.7.2, GS110TPv2 before 5.4.2.36., GS110TPv3 before 7.0.7.2, GS308T before 1.0.3.2, GS310TP before 1.0.3.2, GS724TPP before 2.0.6.3, GS724TPv2 before 2.0.6.3, GS728TPPv2 before 6.0.8.2, GS728TPv2 before 6.0.8.2, GS752TPP before 6.0.8.2, GS752TPv2 before 6.0.8.2, MS510TXM before 1.0.4.2, and MS510TXUP before 1.0.4.2."
},
{
"lang": "es",
"value": "Determinados dispositivos NETGEAR están afectados por una inyección de comandos por parte de un usuario autenticado. Esto afecta a GS108Tv2 versiones anteriores a 5.4.2.36, GS110TPP versiones anteriores a 7.0.7.2, GS110TPv2 versiones anteriores a 5.4.2.36., GS110TPv3 versiones anteriores a 7.0.7.2, GS308T versiones anteriores a 1.0.3.2, GS310TP versiones anteriores a 1.0.3.2, GS724TPP versiones anteriores a 2.0.6. 3, GS724TPv2 versiones anteriores a 2.0.6.3, GS728TPPv2 versiones anteriores a 6.0.8.2, GS728TPv2 versiones anteriores a 6.0.8.2, GS752TPP versiones anteriores a 6.0.8.2, GS752TPv2 versiones anteriores a 6.0.8.2, MS510TXM versiones anteriores a 1.0.4.2 y MS510TXUP versiones anteriores a 1.0.4.2"
}
],
"lastModified": "2026-06-17T04:13:38.780",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs108tv2_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "EACFEA36-9BB9-4F93-BC6A-20A24D2D124D",
"versionEndExcluding": "5.4.2.36"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs108tv2:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "3A9045AE-E205-4FE2-9DD8-51EFA8D9B7EF"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs110tpp_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AAAA5112-5735-4889-9F6C-4217D2CE58FC",
"versionEndExcluding": "7.0.7.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs110tpp:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "E095D139-28EE-4ADD-8FCD-3C2322AC3668"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs110tpv2_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2659C481-E537-482B-930F-0BEC2560817F",
"versionEndExcluding": "5.4.2.36"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs110tpv2:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "BE9F361F-B223-4172-B6BE-5629AE0D28DF"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs308t_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F5EF9D41-5E0D-4BBC-BD8C-40422B29D241",
"versionEndExcluding": "1.0.3.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs308t:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "C204CFAA-0709-421A-A907-8F5B093063F4"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs110tpv3_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "72779793-9379-4F2F-BE33-DCB0245D5809",
"versionEndExcluding": "7.0.7.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs110tpv3:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "6933C827-B585-4A09-92B3-0A8D218EAA2A"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs310tp_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "6A18B9E4-16A6-443B-A504-784FA821B404",
"versionEndExcluding": "1.0.3.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs310tp:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "6761CCD9-9D27-465F-8707-F23707A84803"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs724tpp_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "339698F2-2727-469D-82E4-8E025FCBB106",
"versionEndExcluding": "2.0.6.3"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs724tpp:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "6EB10210-B401-4944-832A-D31AEA8B3952"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs724tpv2_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "20BF678C-4FA5-4194-BC59-61BCEC453739",
"versionEndExcluding": "2.0.6.3"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs724tpv2:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "63D92F01-012E-4D90-AC57-F24AEA0A2038"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs728tppv2_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "018B077A-46B9-4D22-AE55-5FE9E9E45F12",
"versionEndExcluding": "6.0.8.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs728tppv2:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "3FF37586-C1D5-4694-B9A2-4F4E090FA153"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs728tpv2_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "27E38B2B-64BF-42A0-AB56-7A0EA607BC03",
"versionEndExcluding": "6.0.8.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs728tpv2:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "50FD1C49-C811-44DB-9494-86126A9017FF"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs752tpp_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "00504A9F-EBE8-4D88-98C6-52CC260EC944",
"versionEndExcluding": "6.0.8.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs752tpp:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "995D8E9F-7AE6-4A17-A728-7190FB2CE8BC"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:gs752tpv2_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B0964FBB-D311-4262-8CB6-214318C09BFE",
"versionEndExcluding": "6.0.8.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:gs752tpv2:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "A9BCD433-D2E0-4E89-892F-7A8BC6D29C47"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:ms510txm_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7D620D42-9365-4A5E-957C-ADB9EAD56D8C",
"versionEndExcluding": "1.0.4.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:ms510txm:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "5CF12A57-ACFA-48AA-B41C-06EB7095C800"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:netgear:ms510txup_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CD52B5A4-0CF4-4E80-BD9B-05C1DFB855D2",
"versionEndExcluding": "1.0.4.2"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:netgear:ms510txup:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "D3A918F0-36BB-4EDE-98B8-00C3DC8F7BB5"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "cve@mitre.org"
}