Stored XSS in NETGEAR Routers and WiFi Extenders
CVE-2021-45670
6.5MEDIUM
Summary
Certain NETGEAR devices are susceptible to a stored XSS vulnerability that allows attackers to inject malicious scripts into web pages viewed by users. This can lead to unauthorized actions or data compromise when users interact with these affected devices. The vulnerability impacts a wide range of NETGEAR routers and extenders, necessitating immediate remediation for security assurance.
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved