CVE-2018-21209
Summary
| CVE | CVE-2018-21209 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-28 16:15:00 UTC |
| Updated | 2020-05-04 15:46:00 UTC |
| Description | Certain NETGEAR devices are affected by reflected XSS. This affects JNR1010v2 before 1.1.0.46, JR6150 before 1.0.1.10, JWNR2010v5 before 1.1.0.46, PR2000 before 1.0.0.20, R6050 before 1.0.1.10, R6220 before 1.1.0.60, WNDR3700v5 before 1.1.0.50, WNR1000v4 before 1.1.0.46, WNR2020 before 1.1.0.46, and WNR2050 before 1.1.0.46. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | Jnr1010 | v2 | All | All | All |
| Hardware | Netgear | Jnr1010 | v2 | All | All | All |
| Operating System | Netgear | Jnr1010 Firmware | All | All | All | All |
| Operating System | Netgear | Jnr1010 Firmware | All | All | All | All |
| Hardware | Netgear | Jr6150 | - | All | All | All |
| Hardware | Netgear | Jr6150 | - | All | All | All |
| Operating System | Netgear | Jr6150 Firmware | All | All | All | All |
| Operating System | Netgear | Jr6150 Firmware | All | All | All | All |
| Hardware | Netgear | Jwnr2010 | v5 | All | All | All |
| Hardware | Netgear | Jwnr2010 | v5 | All | All | All |
| Operating System | Netgear | Jwnr2010 Firmware | All | All | All | All |
| Operating System | Netgear | Jwnr2010 Firmware | All | All | All | All |
| Hardware | Netgear | Pr2000 | - | All | All | All |
| Hardware | Netgear | Pr2000 | - | All | All | All |
| Operating System | Netgear | Pr2000 Firmware | All | All | All | All |
| Operating System | Netgear | Pr2000 Firmware | All | All | All | All |
| Hardware | Netgear | R6050 | - | All | All | All |
| Hardware | Netgear | R6050 | - | All | All | All |
| Operating System | Netgear | R6050 Firmware | All | All | All | All |
| Operating System | Netgear | R6050 Firmware | All | All | All | All |
| Hardware | Netgear | R6220 | - | All | All | All |
| Hardware | Netgear | R6220 | - | All | All | All |
| Operating System | Netgear | R6220 Firmware | All | All | All | All |
| Operating System | Netgear | R6220 Firmware | All | All | All | All |
| Hardware | Netgear | Wndr3700 | v5 | All | All | All |
| Hardware | Netgear | Wndr3700 | v5 | All | All | All |
| Operating System | Netgear | Wndr3700 Firmware | All | All | All | All |
| Operating System | Netgear | Wndr3700 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr1000 | v4 | All | All | All |
| Hardware | Netgear | Wnr1000 | v4 | All | All | All |
| Operating System | Netgear | Wnr1000 Firmware | All | All | All | All |
| Operating System | Netgear | Wnr1000 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr2020 | - | All | All | All |
| Hardware | Netgear | Wnr2020 | - | All | All | All |
| Operating System | Netgear | Wnr2020 Firmware | All | All | All | All |
| Operating System | Netgear | Wnr2020 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr2050 | - | All | All | All |
| Hardware | Netgear | Wnr2050 | - | All | All | All |
| Operating System | Netgear | Wnr2050 Firmware | All | All | All | All |
| Operating System | Netgear | Wnr2050 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Reflected Cross-Site Scripting on Some Routers and Extenders, PSV-2017-2514 | Answer | NETGEAR Support | CONFIRM | kb.netgear.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.