Security News > 2024 > July > Netgear warns users to patch auth bypass, XSS router flaws

Netgear warns users to patch auth bypass, XSS router flaws
2024-07-12 15:34

Netgear warned customers to update their devices to the latest available firmware, which patches stored cross-site scripting and authentication bypass vulnerabilities in several WiFi 6 router models.

The stored XSS security flaw impacts the XR1000 Nighthawk gaming router.

A Netgear spokesperson was not immediately available to share more details regarding the two security flaws when BleepingComputer reached out earlier today.

Last month, security researchers disclosed half a dozen vulnerabilities of varying severity impacting Netgear WNR614 N300, a popular router among home users and small businesses.

Since this router model reached end-of-life and is no longer supported by Netgear, the company will not release security patches and advised users to replace the router or apply mitigation measures to block potential attacks.

ASUS warns of critical remote authentication bypass on 7 routers.


News URL

https://www.bleepingcomputer.com/news/security/netgear-warns-users-to-patch-authentication-bypass-xss-router-flaws/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Netgear 759 223 621 164 90 1098