CVE-2021-45677: XSS
Published Dec 26, 2021
·Updated
Certain NETGEAR devices are affected by stored XSS. This affects GS108Tv2 before 5.4.2.36 and GS110TPv2 before 5.4.2.36.
Affected Software
8 affected components
All of the following
Netgear Gs108t Firmware<5.4.2.36
Netgear GS108T=v2
All of the following
Netgear Gs110tp Firmware<5.4.2.36
Netgear GS110TP=v2
Netgear Gs108t Firmware<5.4.2.36
Netgear GS108T=v2
Netgear Gs110tp Firmware<5.4.2.36
Netgear GS110TP=v2
Remediation
Event History
Dec 26, 2021
CVE Published
via MITRE·12:23 AM
Data Sourced
via MITRE·12:23 AM
DescriptionSeverity
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-45677?
CVE-2021-45677 is a vulnerability that affects certain NETGEAR devices, specifically GS108Tv2 before version 5.4.2.36 and GS110TPv2 before version 5.4.2.36.
2
How severe is CVE-2021-45677?
CVE-2021-45677 has a severity rating of medium with a CVSS score of 6.1.
3
Which devices are affected by CVE-2021-45677?
GS108Tv2 before version 5.4.2.36 and GS110TPv2 before version 5.4.2.36 are affected by CVE-2021-45677.
4
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for CVE-2021-45677 is CWE-79.
5
How can I fix CVE-2021-45677?
To fix CVE-2021-45677, update your NETGEAR devices to version 5.4.2.36 or later.