PT-2021-22191 · NetGear · R6700+47

Published

2021-08-10

·

Updated

2021-08-19

·

CVE-2021-38534

CVSS v3.1

4.8

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions D3600 versions 1.0.0.0 through 1.0.0.75 D6000 versions 1.0.0.0 through 1.0.0.75 D6100 versions 1.0.0.0 through 1.0.0.59 D6200 versions 1.0.0.0 through 1.1.00.35 D6220 versions 1.0.0.0 through 1.0.0.51 D6400 versions 1.0.0.0 through 1.0.0.85 D7000 versions 1.0.0.0 through 1.0.1.69 D7000v2 versions 1.0.0.0 through 1.0.0.52 D8500 versions 1.0.0.0 through 1.0.3.43 DC112A versions 1.0.0.0 through 1.0.0.41 DGN2200v4 versions 1.0.0.0 through 1.0.0.109 DGND2200Bv4 versions 1.0.0.0 through 1.0.0.108 DM200 versions 1.0.0.0 through 1.0.0.60 JR6150 versions 1.0.0.0 through 1.0.1.17 PR2000 versions 1.0.0.0 through 1.0.0.27 R6020 versions 1.0.0.0 through 1.0.0.41 R6050 versions 1.0.0.0 through 1.0.1.17 R6080 versions 1.0.0.0 through 1.0.0.41 R6220 versions 1.0.0.0 through 1.1.0.79 R6230 versions 1.0.0.0 through 1.1.0.79 R6250 versions 1.0.0.0 through 1.0.4.33 R6260 versions 1.0.0.0 through 1.1.0.63 R6300v2 versions 1.0.0.0 through 1.0.4.33 R6400 versions 1.0.0.0 through 1.0.1.45 R6400v2 versions 1.0.0.0 through 1.0.2.61 R6700 versions 1.0.0.0 through 1.0.2.5 R6700v2 versions 1.0.0.0 through 1.2.0.35 R6700v3 versions 1.0.0.0 through 1.0.2.61 R6800 versions 1.0.0.0 through 1.2.0.35 R6900 versions 1.0.0.0 through 1.0.2.3 R6900P versions 1.0.0.0 through 1.3.1.63 R6900v2 versions 1.0.0.0 through 1.2.0.35 R7000 versions 1.0.0.0 through 1.0.9.59 R7000P versions 1.0.0.0 through 1.3.1.63 R7100LG versions 1.0.0.0 through 1.0.0.49 R7300DST versions 1.0.0.0 through 1.0.0.69 R7450 versions 1.0.0.0 through 1.2.0.35 R7900 versions 1.0.0.0 through 1.0.3.7 R7900P versions 1.0.0.0 through 1.4.1.49 R8000 versions 1.0.0.0 through 1.0.4.27 R8000P versions 1.0.0.0 through 1.4.1.49 R8300 versions 1.0.0.0 through 1.0.2.129 R8500 versions 1.0.0.0 through 1.0.2.129 WNDR3400v3 versions 1.0.0.0 through 1.0.1.23 WNR2020 versions 1.0.0.0 through 1.1.0.61 WNR3500Lv2 versions 1.0.0.0 through 1.2.0.61 XR450 versions 1.0.0.0 through 2.3.2.39 XR500 versions 1.0.0.0 through 2.3.2.39
Description Certain NETGEAR devices are affected by stored XSS.
Recommendations Update D3600 to version 1.0.0.76 or later. Update D6000 to version 1.0.0.76 or later. Update D6100 to version 1.0.0.60 or later. Update D6200 to version 1.1.00.36 or later. Update D6220 to version 1.0.0.52 or later. Update D6400 to version 1.0.0.86 or later. Update D7000 to version 1.0.1.70 or later. Update D7000v2 to version 1.0.0.53 or later. Update D8500 to version 1.0.3.44 or later. Update DC112A to version 1.0.0.42 or later. Update DGN2200v4 to version 1.0.0.110 or later. Update DGND2200Bv4 to version 1.0.0.109 or later. Update DM200 to version 1.0.0.61 or later. Update JR6150 to version 1.0.1.18 or later. Update PR2000 to version 1.0.0.28 or later. Update R6020 to version 1.0.0.42 or later. Update R6050 to version 1.0.1.18 or later. Update R6080 to version 1.0.0.42 or later. Update R6220 to version 1.1.0.80 or later. Update R6230 to version 1.1.0.80 or later. Update R6250 to version 1.0.4.34 or later. Update R6260 to version 1.1.0.64 or later. Update R6300v2 to version 1.0.4.34 or later. Update R6400 to version 1.0.1.46 or later. Update R6400v2 to version 1.0.2.62 or later. Update R6700 to version 1.0.2.6 or later. Update R6700v2 to version 1.2.0.36 or later. Update R6700v3 to version 1.0.2.62 or later. Update R6800 to version 1.2.0.36 or later. Update R6900 to version 1.0.2.4 or later. Update R6900P to version 1.3.1.64 or later. Update R6900v2 to version 1.2.0.36 or later. Update R7000 to version 1.0.9.60 or later. Update R7000P to version 1.3.1.64 or later. Update R7100LG to version 1.0.0.50 or later. Update R7300DST to version 1.0.0.70 or later. Update R7450 to version 1.2.0.36 or later. Update R7900 to version 1.0.3.8 or later. Update R7900P to version 1.4.1.50 or later. Update R8000 to version 1.0.4.28 or later. Update R8000P to version 1.4.1.50 or later. Update R8300 to version 1.0.2.130 or later. Update R8500 to version 1.0.2.130 or later. Update WNDR3400v3 to version 1.0.1.24 or later. Update WNR2020 to version 1.1.0.62 or later. Update WNR3500Lv2 to version 1.2.0.62 or later. Update XR450 to version 2.3.2.40 or later. Update XR500 to version 2.3.2.40 or later.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-38534

Affected Products

D3600
D6000
D6100
D6200
D6220
D6400
D7000
D7000V2
D8500
Dc112A
Dgn2200V4
Dgnd2200Bv4
Dm200
Jr6150
Pr2000
R6020
R6050
R6080
R6220
R6230
R6250
R6260
R6300V2
R6400
R6400V2
R6700
R6700V2
R6700V3
R6800
R6900
R6900P
R6900V2
R7000
R7000P
R7100Lg
R7300Dst
R7450
R7900
R7900P
R8000
R8000P
R8300
R8500
Wndr3400V3
Wnr2020
Wnr3500Lv2
Xr450
Xr500