Stored XSS Vulnerability in NETGEAR WiFi Systems
CVE-2019-20675
6MEDIUM
What is CVE-2019-20675?
Certain NETGEAR WiFi devices are exposed to a stored Cross-Site Scripting (XSS) vulnerability. This affects specific models, including RBR50, RBS50, and RBK50, all prior to version 2.3.5.30. The vulnerability allows an attacker to inject malicious scripts that could be executed in the context of a user's session. This may lead to unauthorized access to sensitive information or manipulation of user interactions with the affected devices.