First published: Fri Apr 25 2014(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in NETGEAR WNDR4700 with firmware 1.0.0.34 allow remote authenticated users to inject arbitrary web script or HTML via the (1) UserName or (2) Password to the NAS User Setup page, (3) deviceName to USB_advanced.htm, or (4) Network Key to the Wireless Setup page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Wndr4700 Firmware | =1.0.0.34 | |
NETGEAR WNDR4700 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.