CVE-2019-20749: XSS
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.47, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.12, R9000 before 1.0.4.12, WN2000RPTv3 before 1.0.1.32, WN3000RPv3 before 1.0.2.70, and WN3100RPv2 before 1.0.0.66.
Affected Software
Event History
Frequently Asked Questions
What devices are affected by CVE-2019-20749?
CVE-2019-20749 affects NETGEAR devices including D7800, EX6100v2, EX6150v2, R7500v2, R7800, R8900, R9000, WN2000RPTv3, WN3000RPv3, and WN3100RP.
What is the severity of CVE-2019-20749?
The severity of CVE-2019-20749 is categorized as high due to its potential for stored cross-site scripting (XSS) attacks.
How do I fix CVE-2019-20749 on my NETGEAR device?
To fix CVE-2019-20749, update your affected NETGEAR device to the latest firmware version.
What are the consequences of CVE-2019-20749?
The consequences of CVE-2019-20749 include unauthorized execution of scripts in the context of the user's browser when visiting a compromised link.
Is there a patch available for CVE-2019-20749?
Yes, patches for CVE-2019-20749 are available in the form of firmware updates for affected NETGEAR devices.