Certain NETGEAR devices are affected by stored XSS
Published Apr 21, 2020
4.8
MEDIUMCVSS 3.1
EPSS 0.50%
Description
Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.
Affected products
No data.
Configuration 1
- < 12.0.2.15
Configuration 2
- < 12.0.2.15
Configuration 3
- < 12.0.2.15
Running on/with
- n/a
Configuration 4
- < 12.0.2.15
Running on/with
- n/a
Configuration 5
- < 12.0.2.15
Running on/with
- n/a
Configuration 6
- < 12.0.2.15
Running on/with
- n/a
Configuration 7
- < 12.0.2.15
Running on/with
- n/a
Configuration 8
- < 12.0.2.15
Configuration 9
- < 12.0.2.15
Configuration 10
- < 12.0.2.15
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (1)
- https://kb.netgear.com/000049044/Security-Advisory-for-Store-Cross-Site-Scripting-on-Some-Fully-Managed-Switches-PSV-2017-1948 x_refsource_CONFIRMVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://kb.netgear.com/000049044/Security-Advisory-for-Store-Cross-Site-Scripting-on-Some-Fully-Managed-Switches-PSV-2017-1948 | x_refsource_CONFIRMVendor Advisory |
Change history (0)
No recorded changes yet.