Stored XSS Vulnerability in NETGEAR Router Products
CVE-2020-35828
6.1MEDIUM
Summary
Certain NETGEAR routers are susceptible to stored Cross-Site Scripting (XSS), which can allow an attacker to inject malicious scripts that are stored on the device. This vulnerability affects multiple devices across various firmware versions, allowing unauthorized access and manipulation of the user's session. It's crucial for users of these products to apply the latest security updates to mitigate the risks associated with this vulnerability.
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved