CVE-2021-45674
4.8
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Exploitability: 1.7 / Impact: 2.7
Source: NVD
Description
Certain NETGEAR devices are affected by stored XSS. This affects R7000 before 1.0.11.110, R7900 before 1.0.4.30, R8000 before 1.0.4.62, RAX15 before 1.0.2.82, RAX20 before 1.0.2.82, RAX200 before 1.0.3.106, RAX75 before 1.0.3.106, and RAX80 before 1.0.3.106.
Affected (8)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.11.110 |
| Running on/with | Platform Versions |
|---|---|
Netgear R7000 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.4.30 |
| Running on/with | Platform Versions |
|---|---|
Netgear R7900 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.4.62 |
| Running on/with | Platform Versions |
|---|---|
Netgear R8000 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.2.82 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax15 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.2.82 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax20 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3.106 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax200 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3.106 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax75 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.3.106 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax80 | All versions |
References (2)
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Timeline
No history available yet.