CVE-2020-35805: XSS
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.74, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBK20 before 2.3.5.26, RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK40 before 2.3.5.30, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK50 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.
Affected Software
Event History
Frequently Asked Questions
Which NETGEAR devices are affected by stored XSS?
NETGEAR devices affected by stored XSS include D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.74, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBK20 before 2.3.5.26, RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK40 before 2.3.5.30, and more.
What is the severity of CVE-2020-35805?
The severity of CVE-2020-35805 is medium with a CVSS score of 4.8.
How can I fix the stored XSS vulnerability in NETGEAR devices?
To fix the stored XSS vulnerability in NETGEAR devices, you need to update the firmware to the recommended versions provided by NETGEAR.
Where can I find more information about the stored XSS vulnerability in NETGEAR devices?
You can find more information about the stored XSS vulnerability in NETGEAR devices in the security advisory provided by NETGEAR.
What is the Common Weakness Enumeration (CWE) for CVE-2020-35805?
The Common Weakness Enumeration (CWE) for CVE-2020-35805 is CWE-79 (Improper Neutralization of Input During Web Page Generation).