First published: Fri Oct 09 2020(Updated: )
Certain NETGEAR devices are affected by stored XSS. This affects EX7000 before 1.0.1.78, R6250 before 1.0.4.34, R6400 before 1.0.1.46, R6400v2 before 1.0.2.66, R7100LG before 1.0.0.50, R7300DST before 1.0.0.70, R7900 before 1.0.3.8, R8300 before 1.0.2.128, and R8500 before 1.0.2.128.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Ex7000 Firmware | <1.0.1.78 | |
NETGEAR EX7000 | ||
netgear R6250 Firmware | <1.0.4.34 | |
NETGEAR R6250 | ||
Netgear R6400 Firmware | <1.0.1.46 | |
NETGEAR R6400 | ||
Netgear R6400v2 Firmware | <1.0.2.66 | |
NETGEAR R6400v2 | ||
Netgear R7100lg Firmware | <1.0.0.50 | |
Netgear R7100LG | ||
Netgear R7300dst Firmware | <1.0.0.70 | |
Netgear R7300dst | ||
Netgear R7900 Firmware | <1.0.3.8 | |
Netgear R7900 | ||
Netgear R8300 Firmware | <1.0.2.128 | |
NETGEAR R8300 | ||
Netgear R8500 Firmware | <1.0.2.128 | |
NETGEAR R8500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The NETGEAR devices affected by stored XSS vulnerability CVE-2020-26917 are EX7000, R6250, R6400, R6400v2, R7100LG, R7300DST, R7900, R8300, and R8500.
The severity of vulnerability CVE-2020-26917 is medium with a severity score of 4.8.
To fix the stored XSS vulnerability in your affected NETGEAR device, update the firmware to the recommended versions specified in the security advisory (link provided).
You can find more information about the stored XSS vulnerability CVE-2020-26917 in the security advisory provided by NETGEAR (link provided).
CWE-79 refers to the Cross-Site Scripting (XSS) vulnerability, which is the type of vulnerability present in CVE-2020-26917.