NETGEAR JNR1010 devices before 1.0.0.32 Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) Vulnerability

Summary

NETGEAR JNR1010 devices before 1.0.0.32 suffers from improper neutralization of input during web page generation (‘Cross-site Scripting’) vulnerability

Credit:

The information has been provided by Vendor

The original article can be found at: http://007software.net/multiple-cross-site-scripting-in-netgear-router-version1-0-0-24/

 


Details

NETGEAR JNR1010 devices before 1.0.0.32 allow webproc?getpage= XSS.

 

Vulnerable Systems:

NETGEAR JNR1010 devices before 1.0.0.32 

 

CVE Information:

CVE-2016-11016

 

Disclosure Timeline:
Published Date:10/16/2019

 

Categories: News