Vulnerabilities > Netgear > Xr700 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2020-12-30 CVE-2020-35839 Cross-site Scripting vulnerability in Netgear products
Certain NETGEAR devices are affected by Stored XSS.
network
low complexity
netgear CWE-79
8.1
2020-12-30 CVE-2020-35831 Cross-site Scripting vulnerability in Netgear products
Certain NETGEAR devices are affected by stored XSS.
network
low complexity
netgear CWE-79
8.1
2020-04-15 CVE-2019-20655 Command Injection vulnerability in Netgear Xr500 Firmware and Xr700 Firmware
Certain NETGEAR devices are affected by command injection by an authenticated user.
local
low complexity
netgear CWE-77
7.8
2020-04-15 CVE-2020-11792 Improper Certificate Validation vulnerability in Netgear products
NETGEAR R8900, R9000, RAX120, and XR700 devices before 2020-01-20 are affected by Transport Layer Security (TLS) certificate private key disclosure.
network
low complexity
netgear CWE-295
7.5
2020-04-15 CVE-2019-20650 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by denial of service.
network
low complexity
netgear
7.5