CVE-2021-45557
About
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects GC108P before 1.0.8.2, GC108PP before 1.0.8.2, GS108Tv3 before 7.0.7.2, GS110TPv3 before 7.0.7.2, GS110TPP before 7.0.7.2, GS110TUP before 1.0.5.3, GS710TUP before 1.0.5.3, GS308T before 1.0.3.2, GS310TP before 1.0.3.2, GS710TUP before 1.0.5.3, GS716TP before 1.0.4.2, GS716TPP before 1.0.4.2, GS724TPP before 2.0.6.3, GS724TPv2 before 2.0.6.3, GS724TPP before 2.0.6.3, GS728TPPv2 before 6.0.8.2, GS728TPv2 before 6.0.8.2, GS752TPv2 before 6.0.8.2, GS752TPP before 6.0.8.2, GS750E before 1.0.1.10, MS510TXM before 1.0.4.2, and MS510TXUP before 1.0.4.2.
Rainforest analyst review
A range of NETGEAR smart-switch and gateway devices allow command injection by an authenticated user — a logged-in account can inject OS commands into the device firmware. Impact spans confidentiality, integrity, and availability with a changed scope, meaning code running on the device can affect the broader system, but the vector is candid about the brakes: adjacent-network access, high attack complexity, and high privileges are all required.
Stack those preconditions together and this is far from a spray-and-pray bug. An attacker needs to already be on the adjacent network, already hold high-privileged credentials on the device, and clear a non-trivial complexity bar. That describes an insider, or an adversary who has already substantially compromised the management path, escalating into command execution on network infrastructure. The prize — control of switches that see and shape traffic — is genuinely valuable, but the entry requirements keep this out of the opportunistic-exploitation category despite the high score.
Our handling is management-plane isolation and credential control, because the exploit lives behind authenticated, adjacent access. The long affected-model list means the first task is inventorying which NETGEAR switches are in the estate and confirming their management interfaces sit on a locked-down admin network with strong, non-default credentials — that directly attacks the adjacency and privilege preconditions. We'd schedule the firmware updates on the normal infrastructure cadence and rank it below unauthenticated bugs, since exploitation presumes an attacker who is already well inside.
References
Related CVEs
Frequently asked questions
What is CVE-2021-45557?
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects GC108P before 1.0.8.2, GC108PP before 1.0.8.2, GS108Tv3 before 7.0.7.2, GS110TPv3 before 7.0.7.2, GS110TPP before 7.0.7.2, GS110TUP before 1.0.5.3, GS710TUP before 1.0.5.3, GS308T before 1.0.3.2, GS310TP before 1.0.3.2, GS710TUP before 1.0.5.3, GS716TP before 1.0.4.2, GS716TPP before 1.0.4.2, GS724TPP before 2.0.6.3, GS72…
How severe is CVE-2021-45557?
CVE-2021-45557 carries a CVSS 3.1 base score of 7.5, rated high. On the Rainforest Risk Index — which weighs the severity alongside how easy the flaw is to reach and how broad its impact is — it scores 74 out of 100, in the high band.
How is CVE-2021-45557 exploited?
According to the CVSS vector (CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:C/C:L/I:H/A:H): attack vector Adjacent, attack complexity High, privileges required High, user interaction None. Impact on confidentiality Low, integrity High and availability High.
Which products are affected by CVE-2021-45557?
Public advisories list the following as affected: gc108p, gc108p firmware, gc108pp, gc108pp firmware, gs108tv3, gs108tv3 firmware, +34. Check the references on this page for the exact versions each vendor confirms.
How do I fix CVE-2021-45557?
Apply the fix the vendor published — the references on this page link to the primary advisories and patches. When patching can't happen right away, reduce the exposure of the affected component and watch it for exploitation attempts. Rainforest customers see this vulnerability correlated to their own assets and prioritized by real exposure, not by score alone.
Empower Your Security Strategy with Rainforest
Discover vulnerabilities early, prioritize critical threats, and protect what truly matters. Rainforest streamlines your security operations, saving you time and reducing costs, so you can focus on what drives your business forward.
