CVE-2017-18834: XSS
Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this NETGEAR vulnerability?
The vulnerability ID for this NETGEAR vulnerability is CVE-2017-18834.
Which devices are affected by this vulnerability?
This vulnerability affects NETGEAR M4300-28G, M4300-52G, M4300-28G-POE+, M4300-52G-POE+, M4300-8X8F, M4300-12X12F, M4300-24X24F, and M4300-24X devices.
What is the severity of CVE-2017-18834?
The severity of CVE-2017-18834 is medium, with a CVSS score of 6.1.
How can I fix this vulnerability?
To fix this vulnerability, update the firmware of the affected NETGEAR devices to version 12.0.2.15 or higher.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability in the security advisory published by NETGEAR.