PT-2020-8264 · NetGear · Netgear Ex3800+6
Published
2020-04-24
·
Updated
2020-04-28
·
CVE-2017-18715
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions:
NETGEAR EX3700 versions prior to 1.0.0.66
NETGEAR EX3800 versions prior to 1.0.0.66
NETGEAR EX6100 versions prior to 1.0.2.20
NETGEAR EX6120 versions prior to 1.0.0.34
NETGEAR EX6150 versions prior to 1.0.0.36
NETGEAR EX6200 versions prior to 1.0.3.84
NETGEAR EX7000 versions prior to 1.0.0.60
Description:
The issue is related to reflected XSS, affecting certain NETGEAR devices.
Recommendations:
For NETGEAR EX3700 versions prior to 1.0.0.66, update to version 1.0.0.66 or later.
For NETGEAR EX3800 versions prior to 1.0.0.66, update to version 1.0.0.66 or later.
For NETGEAR EX6100 versions prior to 1.0.2.20, update to version 1.0.2.20 or later.
For NETGEAR EX6120 versions prior to 1.0.0.34, update to version 1.0.0.34 or later.
For NETGEAR EX6150 versions prior to 1.0.0.36, update to version 1.0.0.36 or later.
For NETGEAR EX6200 versions prior to 1.0.3.84, update to version 1.0.3.84 or later.
For NETGEAR EX7000 versions prior to 1.0.0.60, update to version 1.0.0.60 or later.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Netgear Ex3700
Netgear Ex3800
Netgear Ex6100
Netgear Ex6120
Netgear Ex6150
Netgear Ex6200
Netgear Ex7000