CVE-2016-10864: XSS
Published Aug 8, 2019
·Updated
NETGEAR EX7000 V1.0.0.421.0.94 devices allow XSS via the SSID.
Affected Software
2 affected components
Netgear Ex7000 Firmware<=1.0.0.42_1.0.94
Netgear EX7000
Event History
Aug 8, 2019
CVE Published
via MITRE·12:48 PM
Data Sourced
via MITRE·12:48 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2016-10864.
2
What is the severity of CVE-2016-10864?
The severity of CVE-2016-10864 is medium with a rating of 5.2.
3
How does CVE-2016-10864 affect NETGEAR EX7000 devices?
CVE-2016-10864 allows XSS attacks via the SSID on NETGEAR EX7000 V1.0.0.42_1.0.94 devices.
4
How can I fix CVE-2016-10864?
To fix CVE-2016-10864, ensure that your NETGEAR EX7000 device is updated to a firmware version that addresses this vulnerability.
5
Where can I find more information about CVE-2016-10864?
You can find more information about CVE-2016-10864 at the following reference: [Link](https://www.pentestpartners.com/security-blog/netgear-ex7000-wi-fi-range-extender-minor-xss-and-poor-password-handling/).