CVE-2020-26915
https://notcve.org/view.php?id=CVE-2020-26915
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBK50 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10. Determinados dispositivos NETGEAR, están afectados por una vulnerabilidad de tipo XSS almacenado. Esto afecta a D7800 versiones anteriores a 1.0.1.56, R7500v2 versiones anteriores a 1.0.3.46, R7800 versiones anteriores a 1.0.2.68, R8900 versiones anteriores a 1.0.4.28, R9000 versiones anteriores a 1.0.4.28, RAX120 versiones anteriores a 1.0.0.78, RBK50 versiones anteriores a 2.3.5.30, RBR50 versiones anteriores a 2.3.5.30, RBS50 versiones anteriores a 2.3.5.30, XR500 versiones anteriores a 2.3.2.56 y XR700 versiones anteriores a 1.0.1.10 • https://kb.netgear.com/000062338/Security-Advisory-for-Stored-Cross-Site-Scripting-on-Some-Routers-and-WiFi-Systems-PSV-2018-0554 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2018-21118
https://notcve.org/view.php?id=CVE-2018-21118
NETGEAR XR500 devices before 2.3.2.32 are affected by authentication bypass. Los dispositivos NETGEAR XR500 versiones anteriores a 2.3.2.32, están afectados por una omisión de autenticación. • https://kb.netgear.com/000060240/Security-Advisory-for-Authentication-Bypass-on-XR500-PSV-2018-0324 • CWE-287: Improper Authentication •
CVE-2018-21117
https://notcve.org/view.php?id=CVE-2018-21117
NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers via the traceroute handler. Los dispositivos NETGEAR XR500 versiones anteriores a 2.3.2.32, están afectados por una ejecución de código remota por parte de atacantes no autenticados por medio del manejador traceroute. • https://kb.netgear.com/000060241/Security-Advisory-for-Pre-Authentication-Stack-Overflow-on-XR500-PSV-2018-0313 •
CVE-2018-21116
https://notcve.org/view.php?id=CVE-2018-21116
NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers. Los dispositivos NETGEAR XR500 versiones anteriores a 2.3.2.32, están afectados por una ejecución de código remota por parte de atacantes no autenticados. • https://kb.netgear.com/000060242/Security-Advisory-for-Pre-Authentication-Stack-Overflow-on-XR500-PSV-2018-0312 •
CVE-2018-21115
https://notcve.org/view.php?id=CVE-2018-21115
NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers. Los dispositivos NETGEAR XR500 versiones anteriores a 2.3.2.32, están afectados por una ejecución de código remota por parte de atacantes no autenticados. • https://kb.netgear.com/000060243/Security-Advisory-for-Pre-Authentication-Stack-Overflow-on-XR500-PSV-2018-0309 • CWE-20: Improper Input Validation •