CVE-2020-11774: XSS
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-11774?
CVE-2020-11774 is classified as a stored cross-site scripting (XSS) vulnerability affecting specific NETGEAR devices.
How do I fix CVE-2020-11774?
To remediate CVE-2020-11774, update the affected NETGEAR devices to the latest firmware version.
Which NETGEAR devices are affected by CVE-2020-11774?
CVE-2020-11774 affects NETGEAR D7800, R7500v2, R7800, R8900, R9000, RAX120, XR500, and XR700 models running below specific firmware versions.
Can I still use my NETGEAR device if it's affected by CVE-2020-11774?
While you can continue to use your NETGEAR device, it is highly recommended to update immediately to reduce the risk of exploitation.
What could happen if I don't address CVE-2020-11774?
Failing to address CVE-2020-11774 may allow attackers to inject malicious scripts into web pages viewed by users of the affected NETGEAR devices.