PT-2020-8264 · NetGear · Netgear Ex3800+6

Published

2020-04-24

·

Updated

2020-04-28

·

CVE-2017-18715

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions: NETGEAR EX3700 versions prior to 1.0.0.66 NETGEAR EX3800 versions prior to 1.0.0.66 NETGEAR EX6100 versions prior to 1.0.2.20 NETGEAR EX6120 versions prior to 1.0.0.34 NETGEAR EX6150 versions prior to 1.0.0.36 NETGEAR EX6200 versions prior to 1.0.3.84 NETGEAR EX7000 versions prior to 1.0.0.60
Description: The issue is related to reflected XSS, affecting certain NETGEAR devices.
Recommendations: For NETGEAR EX3700 versions prior to 1.0.0.66, update to version 1.0.0.66 or later. For NETGEAR EX3800 versions prior to 1.0.0.66, update to version 1.0.0.66 or later. For NETGEAR EX6100 versions prior to 1.0.2.20, update to version 1.0.2.20 or later. For NETGEAR EX6120 versions prior to 1.0.0.34, update to version 1.0.0.34 or later. For NETGEAR EX6150 versions prior to 1.0.0.36, update to version 1.0.0.36 or later. For NETGEAR EX6200 versions prior to 1.0.3.84, update to version 1.0.3.84 or later. For NETGEAR EX7000 versions prior to 1.0.0.60, update to version 1.0.0.60 or later.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-18715

Affected Products

Netgear Ex3700
Netgear Ex3800
Netgear Ex6100
Netgear Ex6120
Netgear Ex6150
Netgear Ex6200
Netgear Ex7000