CVE-2017-18800: XSS
Published Apr 21, 2020
·Updated
Certain NETGEAR devices are affected by reflected XSS. This affects R6700v2 before 1.1.0.42 and R6800 before 1.1.0.42.
Affected Software
4 affected components
Netgear R6700 firmware<1.1.0.42
Netgear R6700=v2
Netgear R6800 Firmware<1.1.0.42
Netgear R6800
Event History
Apr 21, 2020
CVE Published
via MITRE·06:30 PM
Data Sourced
via MITRE·06:30 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2017-18800?
CVE-2017-18800 has a moderate severity due to the potential for reflected cross-site scripting attacks.
2
How do I fix CVE-2017-18800?
To fix CVE-2017-18800, update your NETGEAR R6700v2 to version 1.1.0.42 or later and the R6800 to version 1.1.0.42 or later.
3
Which devices are affected by CVE-2017-18800?
CVE-2017-18800 affects NETGEAR R6700v2 devices before version 1.1.0.42 and R6800 devices before version 1.1.0.42.
4
What is reflected XSS in CVE-2017-18800?
Reflected XSS in CVE-2017-18800 allows attackers to inject malicious scripts that can execute in the user's browser.
5
Can I still use my NETGEAR device with CVE-2017-18800?
You can still use your device, but it is highly recommended to update it to avoid vulnerability to attacks.