PT-2021-22192 · NetGear · R7200+18
Nstarke
·
Published
2021-08-10
·
Updated
2021-08-19
·
CVE-2021-38535
CVSS v3.1
4.8
Medium
| Vector | AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
D6200 versions prior to 1.1.00.40
D7000 versions prior to 1.0.1.78
R6020 versions prior to 1.0.0.48
R6080 versions prior to 1.0.0.48
R6120 versions prior to 1.0.0.76
R6260 versions prior to 1.1.0.78
R6700v2 versions prior to 1.2.0.76
R6800 versions prior to 1.2.0.76
R6900v2 versions prior to 1.2.0.76
R6850 versions prior to 1.1.0.78
R7200 versions prior to 1.2.0.76
R7350 versions prior to 1.2.0.76
R7400 versions prior to 1.2.0.76
R7450 versions prior to 1.2.0.76
AC2100 versions prior to 1.2.0.76
AC2400 versions prior to 1.2.0.76
AC2600 versions prior to 1.2.0.76
RAX35 versions prior to 1.0.3.62
RAX40 versions prior to 1.0.3.62
Description
Certain NETGEAR devices are affected by stored XSS.
Recommendations
For D6200 versions prior to 1.1.00.40, update to version 1.1.00.40 or later.
For D7000 versions prior to 1.0.1.78, update to version 1.0.1.78 or later.
For R6020 versions prior to 1.0.0.48, update to version 1.0.0.48 or later.
For R6080 versions prior to 1.0.0.48, update to version 1.0.0.48 or later.
For R6120 versions prior to 1.0.0.76, update to version 1.0.0.76 or later.
For R6260 versions prior to 1.1.0.78, update to version 1.1.0.78 or later.
For R6700v2 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For R6800 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For R6900v2 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For R6850 versions prior to 1.1.0.78, update to version 1.1.0.78 or later.
For R7200 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For R7350 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For R7400 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For R7450 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For AC2100 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For AC2400 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For AC2600 versions prior to 1.2.0.76, update to version 1.2.0.76 or later.
For RAX35 versions prior to 1.0.3.62, update to version 1.0.3.62 or later.
For RAX40 versions prior to 1.0.3.62, update to version 1.0.3.62 or later.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ac2100
Ac2400
Ac2600
D6200
D7000
R6020
R6080
R6120
R6260
R6700V2
R6800
R6850
R6900V2
R7200
R7350
R7400
R7450
Rax35
Rax40