CVE-2021-45663: XSS
Published Dec 26, 2021
·Updated
NETGEAR R7000 devices before 1.0.11.126 are affected by stored XSS.
Affected Software
4 affected components
All of the following
Netgear R7000 Firmware<1.0.11.126
Netgear R7000
Netgear R7000 Firmware<1.0.11.126
Netgear R7000
Remediation
Event History
Dec 26, 2021
CVE Published
via MITRE·12:26 AM
Data Sourced
via MITRE·12:26 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-45663?
CVE-2021-45663 is a vulnerability that affects NETGEAR R7000 devices before version 1.0.11.126, allowing for stored cross-site scripting (XSS) attacks.
2
How severe is CVE-2021-45663?
CVE-2021-45663 has a severity rating of medium with a CVSS score of 5.4.
3
How do I know if my NETGEAR R7000 device is affected?
If your NETGEAR R7000 device is running firmware version prior to 1.0.11.126, it is affected by CVE-2021-45663.
4
What is stored cross-site scripting (XSS)?
Stored cross-site scripting (XSS) is a type of web vulnerability where an attacker injects malicious code into a website, which is then executed by the victim's browser.
5
How can I fix CVE-2021-45663?
To fix CVE-2021-45663, you should update your NETGEAR R7000 device to firmware version 1.0.11.126 or later.