CVE-2017-18834

Severity
6.1MEDIUM
EPSS
0.2%
top 56.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 20
Latest updateMay 24

Description

Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages10 packages

🔴Vulnerability Details

2
GHSA
GHSA-87jj-fh8g-jj9v: Certain NETGEAR devices are affected by reflected XSS2022-05-24
CVEList
CVE-2017-18834: Certain NETGEAR devices are affected by reflected XSS2020-04-20