CVE-2019-20645: XSS
Published Apr 15, 2020
·Updated
NETGEAR RAX40 devices before 1.0.3.62 are affected by stored XSS.
Affected Software
2 affected components
Netgear Rax40 Firmware<1.0.3.62
Netgear RAX40
Event History
Apr 15, 2020
CVE Published
via MITRE·05:18 PM
Data Sourced
via MITRE·05:18 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2019-20645.
2
What is the severity of CVE-2019-20645?
The severity of CVE-2019-20645 is medium with a score of 4.8.
3
What is the affected software version of CVE-2019-20645?
The affected software version of CVE-2019-20645 is NETGEAR RAX40 devices before 1.0.3.62.
4
What is the impact of CVE-2019-20645?
CVE-2019-20645 allows attackers to execute malicious scripts in a victim's browser.
5
How can I fix CVE-2019-20645?
Update the firmware of your NETGEAR RAX40 device to version 1.0.3.62 or later to fix CVE-2019-20645.