NETGEAR.Orbi.GuestPortal.XSS

description-logoDescription

This indicates an attack attempts to exploit a stored Cross-site Scripting vulnerability in Netgear Routers.
The vulnerability is caused by insufficient sanitizing of user supplied inputs on Guest Portal page. A remote attacker may be able to exploit this to execute arbitrary script code within the context of the application

affected-products-logoAffected Products

SRR60, running firmware versions prior to 2.2.1.210
SRS60, running firmware versions prior to 2.2.1.210

Impact logoImpact

System Compromise: Remote attackers can execute arbitrary script code in the context of the application

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2023-08-10 25.619 Name:Netgear.
Orbi.
GuestPortal.
XSS:NETGEAR.
Orbi.
GuestPortal.
XSS
2019-08-07 14.665 Name:FG-VD-18-052_Netgear.
0day:Netgear.
Orbi.
GuestPortal.
XSS