Stored XSS Vulnerability in NETGEAR R7000 Devices
CVE-2021-45662
6.1MEDIUM
Summary
NETGEAR R7000 devices running software versions earlier than 1.0.9.88 are susceptible to a stored XSS vulnerability. This security flaw allows malicious actors to inject arbitrary web scripts into the application, which may be executed in the context of the user's browser session. It is crucial for users of the R7000 to update to the latest firmware to mitigate potential exploitation risks. For detailed information, refer to the official security advisory.
References
CVSS V3.1
Score:
6.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved