CVE-2019-20721
Summary
| CVE | CVE-2019-20721 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-16 19:15:00 UTC |
| Updated | 2020-04-22 20:33:00 UTC |
| Description | Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.47, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX6400 before 1.0.2.136, EX7300 before 1.0.2.136, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.12, R9000 before 1.0.4.12, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3000RPv3 before 1.0.2.70, WN3100RPv2 before 1.0.0.66, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.66, XR450 before 2.3.2.32, and XR500 before 2.3.2.32. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | D7800 | - | All | All | All |
| Hardware | Netgear | D7800 | - | All | All | All |
| Operating System | Netgear | D7800 Firmware | All | All | All | All |
| Operating System | Netgear | D7800 Firmware | All | All | All | All |
| Hardware | Netgear | Ex2700 | - | All | All | All |
| Hardware | Netgear | Ex2700 | - | All | All | All |
| Operating System | Netgear | Ex2700 Firmware | All | All | All | All |
| Operating System | Netgear | Ex2700 Firmware | All | All | All | All |
| Hardware | Netgear | Ex6100 | v2 | All | All | All |
| Hardware | Netgear | Ex6100 | v2 | All | All | All |
| Operating System | Netgear | Ex6100 Firmware | All | All | All | All |
| Operating System | Netgear | Ex6100 Firmware | All | All | All | All |
| Hardware | Netgear | Ex6150 | v2 | All | All | All |
| Hardware | Netgear | Ex6150 | v2 | All | All | All |
| Operating System | Netgear | Ex6150 Firmware | All | All | All | All |
| Operating System | Netgear | Ex6150 Firmware | All | All | All | All |
| Hardware | Netgear | Ex6200 | v2 | All | All | All |
| Hardware | Netgear | Ex6200 | v2 | All | All | All |
| Operating System | Netgear | Ex6200 Firmware | All | All | All | All |
| Operating System | Netgear | Ex6200 Firmware | All | All | All | All |
| Hardware | Netgear | Ex6400 | - | All | All | All |
| Hardware | Netgear | Ex6400 | - | All | All | All |
| Operating System | Netgear | Ex6400 Firmware | All | All | All | All |
| Operating System | Netgear | Ex6400 Firmware | All | All | All | All |
| Hardware | Netgear | Ex7300 | - | All | All | All |
| Hardware | Netgear | Ex7300 | - | All | All | All |
| Operating System | Netgear | Ex7300 Firmware | All | All | All | All |
| Operating System | Netgear | Ex7300 Firmware | All | All | All | All |
| Hardware | Netgear | R7500 | v2 | All | All | All |
| Hardware | Netgear | R7500 | v2 | All | All | All |
| Operating System | Netgear | R7500 Firmware | All | All | All | All |
| Operating System | Netgear | R7500 Firmware | All | All | All | All |
| Hardware | Netgear | R7800 | - | All | All | All |
| Hardware | Netgear | R7800 | - | All | All | All |
| Operating System | Netgear | R7800 Firmware | All | All | All | All |
| Operating System | Netgear | R7800 Firmware | All | All | All | All |
| Hardware | Netgear | R8900 | - | All | All | All |
| Hardware | Netgear | R8900 | - | All | All | All |
| Operating System | Netgear | R8900 Firmware | All | All | All | All |
| Operating System | Netgear | R8900 Firmware | All | All | All | All |
| Hardware | Netgear | R9000 | - | All | All | All |
| Hardware | Netgear | R9000 | - | All | All | All |
| Operating System | Netgear | R9000 Firmware | All | All | All | All |
| Operating System | Netgear | R9000 Firmware | All | All | All | All |
| Hardware | Netgear | Wn2000rpt | v3 | All | All | All |
| Hardware | Netgear | Wn2000rpt | v3 | All | All | All |
| Operating System | Netgear | Wn2000rpt Firmware | All | All | All | All |
| Operating System | Netgear | Wn2000rpt Firmware | All | All | All | All |
| Hardware | Netgear | Wn3000rp | v2 | All | All | All |
| Hardware | Netgear | Wn3000rp | v3 | All | All | All |
| Hardware | Netgear | Wn3000rp | v2 | All | All | All |
| Hardware | Netgear | Wn3000rp | v3 | All | All | All |
| Operating System | Netgear | Wn3000rp Firmware | All | All | All | All |
| Operating System | Netgear | Wn3000rp Firmware | All | All | All | All |
| Hardware | Netgear | Wn3100rp | v2 | All | All | All |
| Hardware | Netgear | Wn3100rp | v2 | All | All | All |
| Operating System | Netgear | Wn3100rp Firmware | All | All | All | All |
| Operating System | Netgear | Wn3100rp Firmware | All | All | All | All |
| Hardware | Netgear | Wndr4300 | v2 | All | All | All |
| Hardware | Netgear | Wndr4300 | v2 | All | All | All |
| Operating System | Netgear | Wndr4300 Firmware | All | All | All | All |
| Operating System | Netgear | Wndr4300 Firmware | All | All | All | All |
| Hardware | Netgear | Wndr4500 | v3 | All | All | All |
| Hardware | Netgear | Wndr4500 | v3 | All | All | All |
| Operating System | Netgear | Wndr4500 Firmware | All | All | All | All |
| Operating System | Netgear | Wndr4500 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr2000 | v5 | All | All | All |
| Hardware | Netgear | Wnr2000 | v5 | All | All | All |
| Operating System | Netgear | Wnr2000 Firmware | All | All | All | All |
| Operating System | Netgear | Wnr2000 Firmware | All | All | All | All |
| Hardware | Netgear | Xr450 | - | All | All | All |
| Hardware | Netgear | Xr450 | - | All | All | All |
| Operating System | Netgear | Xr450 Firmware | All | All | All | All |
| Operating System | Netgear | Xr450 Firmware | All | All | All | All |
| Hardware | Netgear | Xr500 | - | All | All | All |
| Hardware | Netgear | Xr500 | - | All | All | All |
| Operating System | Netgear | Xr500 Firmware | All | All | All | All |
| Operating System | Netgear | Xr500 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Stored Cross Site Scripting on Some Routers, Gateways, and Extenders, PSV-2018-0159 | Answer | NETGEAR Support | CONFIRM | kb.netgear.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.