Unauthenticated Cross-Site Scripting Vulnerability in Netgear WAC120 AC Access Point
CVE-2021-46382
6.1MEDIUM
What is CVE-2021-46382?
The Netgear WAC120 AC Access Point is susceptible to an unauthenticated cross-site scripting (XSS) vulnerability, which could allow attackers to execute harmful scripts in the context of the user's browser. This weakness can potentially lead to a variety of malicious actions, such as session hijacking, where an attacker could gain unauthorized access to user accounts, or clipboard hijacking, enabling them to intercept sensitive information. Users of the WAC120 should take immediate steps to secure their devices and monitor for unusual activity.