CVE-2020-26917

Description

Certain NETGEAR devices are affected by stored XSS. This affects EX7000 before 1.0.1.78, R6250 before 1.0.4.34, R6400 before 1.0.1.46, R6400v2 before 1.0.2.66, R7100LG before 1.0.0.50, R7300DST before 1.0.0.70, R7900 before 1.0.3.8, R8300 before 1.0.2.128, and R8500 before 1.0.2.128.

Risk Information

Base Score
4.1
MODERATE
Vector
CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:L
EPSS Score
Exploitation Probability
0.213

Associated Vulnerability

VulnerabilityOS Platform
Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability (CVE-2020-26917)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234