CVE-2020-35823: XSS
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.74, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBK20 before 2.3.5.26, RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK40 before 2.3.5.30, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK50 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this NETGEAR vulnerability?
The vulnerability ID for this NETGEAR vulnerability is CVE-2020-35823.
Which NETGEAR devices are affected by this vulnerability?
The NETGEAR devices affected by this vulnerability include D7800, R7500v2, R7800, R8900, R9000, RAX120, RBK20, RBR20, RBS20, RBK40, RBK50, RBR40, RBS40, RBR50, RBS50, XR500, and XR700.
What is the severity of vulnerability CVE-2020-35823?
The severity of vulnerability CVE-2020-35823 is medium with a CVSS score of 4.8.
How can I fix the NETGEAR vulnerability with ID CVE-2020-35823?
To fix the NETGEAR vulnerability with ID CVE-2020-35823, make sure to update the firmware of the affected devices to the specified versions.
Where can I find more information about this NETGEAR vulnerability?
You can find more information about this NETGEAR vulnerability in the reference link provided: https://kb.netgear.com/000062675/Security-Advisory-for-Stored-Cross-Site-Scripting-on-Some-Routers-and-WiFi-Systems-PSV-2018-0500