PT-2020-7666 · NetGear · Netgear Cg3100

Published

2020-02-13

·

Updated

2020-02-19

·

CVE-2014-3919

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Netgear CG3100 versions prior to 3.9.2421.13.mp3 V0027
Description A vulnerability exists that could allow a malicious user to obtain sensitive information by embedding a malicious script in an unspecified page.
Recommendations For versions prior to 3.9.2421.13.mp3 V0027, update to version 3.9.2421.13.mp3 V0027 or later to resolve the issue. As a temporary workaround, consider restricting access to unspecified pages that may be vulnerable to malicious script embedding until a patch is available.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-3919

Affected Products

Netgear Cg3100