First published: Wed Apr 15 2020(Updated: )
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR RBR50 firmware | <2.3.5.30 | |
NETGEAR RBR50 firmware | ||
NETGEAR RBK50 firmware | <2.3.5.30 | |
NETGEAR Orbi RBK50 | ||
NETGEAR RBS50 Firmware | <2.3.5.30 | |
NETGEAR RBS50 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-20661 is categorized as a moderate severity vulnerability due to the potential for stored XSS attacks.
To fix CVE-2019-20661, update your NETGEAR RBR50, RBS50, or RBK50 devices to firmware version 2.3.5.30 or later.
CVE-2019-20661 affects NETGEAR RBR50, RBS50, and RBK50 devices running firmware versions prior to 2.3.5.30.
CVE-2019-20661 is a stored cross-site scripting (XSS) vulnerability that can allow an attacker to inject malicious scripts.
Affected users should immediately update their firmware to the latest version to mitigate the risks associated with CVE-2019-20661.