3.5
CVSSv2

CVE-2019-20738

Published: 16/04/2020 Updated: 05/05/2020
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Certain NETGEAR devices are affected by stored XSS. This affects D6100 prior to 1.0.0.58, D7800 prior to 1.0.1.34, JNR1010v2 prior to 1.1.0.50, JWNR2010v5 prior to 1.1.0.50, RBK50 prior to 2.3.5.30, RBR50 prior to 2.3.5.30, RBS50 prior to 2.3.5.30, R6020 prior to 1.0.0.30, R6080 prior to 1.0.0.30, R6100 prior to 1.0.1.16, R6120 prior to 1.0.0.40, R6700v2 prior to 1.2.0.14, R6800 prior to 1.2.0.14, R6900v2 prior to 1.2.0.14, R7500v2 prior to 1.0.3.26, R7800 prior to 1.0.2.46, R9000 prior to 1.0.4.2, WN3000RPv2 prior to 1.0.0.52, WN3000RPv3 prior to 1.0.2.78, WNDR3700v4 prior to 1.0.2.102, WNDR3700v5 prior to 1.1.0.54, WNDR4300v1 prior to 1.0.2.104, WNDR4300v2 prior to 1.0.0.48, WNDR4500v3 prior to 1.0.0.48, WNR1000v4 prior to 1.1.0.50, WNR2000v5 prior to 1.0.0.64, WNR2020 prior to 1.1.0.50, and WNR2050 prior to 1.1.0.50. NOTE: this may be a result of an incomplete fix for CVE-2017-18866.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

netgear d6100_firmware

netgear d7800_firmware

netgear jnr1010_firmware

netgear jwnr2010_firmware

netgear rbk50_firmware

netgear rbr50_firmware

netgear rbs50_firmware

netgear r6020_firmware

netgear r6080_firmware

netgear r6100_firmware

netgear r6120_firmware

netgear r6700_firmware

netgear r6800_firmware

netgear r6900_firmware

netgear r7500_firmware

netgear r7800_firmware

netgear r9000_firmware

netgear wn3000rp_firmware

netgear wndr3700_firmware

netgear wndr4300_firmware

netgear wndr4500_firmware

netgear wnr1000_firmware

netgear wnr2000_firmware

netgear wnr2020_firmware

netgear wnr2050_firmware