This affects GS108Tv2 before 5.4.2.36 and GS110TPv2 before 5.4.2.36.Ĭertain NETGEAR devices are affected by stored XSS. NETGEAR RAX200 devices before 1.0.5.132 are affected by insecure code.Ĭertain NETGEAR devices are affected by stored XSS. By extracting the configuration using readily available public tools, a user can reconfigure settings not intended to be manipulated, repackage the configuration, and restore a backup causing these settings to be changed.Ĭertain NETGEAR devices are affected by privilege escalation. It does not appear that normal users are intended to be able to manipulate configuration backups due to the fact that they are encrypted/obfuscated. Netgear Nighthawk R6700 version 1.0.4.120 makes use of a hardcoded credential.