CVE-2022-47052: XSS
The web interface of the 'Nighthawk R6220 AC1200 Smart Wi-Fi Router' is vulnerable to a CRLF Injection attack that can be leveraged to perform Reflected XSS and HTML Injection. A malicious unauthenticated attacker can exploit this vulnerability using a specially crafted URL. This affects firmware versions: V1.1.0.1121.0.1, V1.1.0.1141.0.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-47052?
CVE-2022-47052 is considered a medium severity vulnerability due to its potential for exploitation via CRLF injection.
How do I fix CVE-2022-47052?
To fix CVE-2022-47052, upgrade the firmware of your NETGEAR R6220 to the latest version that addresses this vulnerability.
Can CVE-2022-47052 be exploited remotely?
Yes, CVE-2022-47052 can be exploited by a remote unauthenticated attacker using a specially crafted URL.
What types of attacks can be executed due to CVE-2022-47052?
CVE-2022-47052 can be leveraged to perform Reflected XSS and HTML Injection attacks.
Which firmware versions are affected by CVE-2022-47052?
CVE-2022-47052 affects firmware versions 1.1.0.112_1.0.1 and 1.1.0.114_1.0.1 for the NETGEAR R6220.