Show plain JSON{"id": "CVE-2017-18715", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 4.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "NONE", "confidentialityImpact": "NONE"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}], "cvssMetricV30": [{"type": "Secondary", "source": "cve@mitre.org", "cvssData": {"scope": "CHANGED", "version": "3.0", "baseScore": 5.2, "attackVector": "ADJACENT_NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N", "integrityImpact": "LOW", "userInteraction": "REQUIRED", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "LOW"}, "impactScore": 2.7, "exploitabilityScore": 2.1}], "cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "CHANGED", "version": "3.1", "baseScore": 6.1, "attackVector": "NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N", "integrityImpact": "LOW", "userInteraction": "REQUIRED", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "LOW"}, "impactScore": 2.7, "exploitabilityScore": 2.8}]}, "published": "2020-04-24T14:15:13.060", "references": [{"url": "https://kb.netgear.com/000053133/Security-Advisory-for-Reflected-Cross-Site-Scripting-on-Some-Extenders-PSV-2016-0075", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "https://kb.netgear.com/000053133/Security-Advisory-for-Reflected-Cross-Site-Scripting-on-Some-Extenders-PSV-2016-0075", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-79"}]}], "descriptions": [{"lang": "en", "value": "Certain NETGEAR devices are affected by reflected XSS. This affects EX3700 before 1.0.0.66, EX3800 before 1.0.0.66, EX6100 before 1.0.2.20, EX6120 before 1.0.0.34, EX6150 before 1.0.0.36, EX6200 before 1.0.3.84, and EX7000 before 1.0.0.60."}, {"lang": "es", "value": "Determinados dispositivos NETGEAR est\u00e1n afectados por una vulnerabilidad de tipo XSS reflejado. Esto afecta a EX3700 versiones anteriores a la versi\u00f3n 1.0.0.66, EX3800 versiones anteriores a la versi\u00f3n 1.0.0.66, EX6100 versiones anteriores a 1.0.2.20, EX6120 versiones anteriores a 1.0.0.34, EX6150 versiones anteriores a 1.0.0.36, EX6200 versiones anteriores a 1.0.3.84, y EX7000 versiones anteriores a 1.0.0.60."}], "lastModified": "2024-11-21T03:20:44.233", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:netgear:ex3700_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "30915FC1-9C6E-4489-B61C-EC7EC311DF8C", "versionEndExcluding": "1.0.0.66"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:netgear:ex3700:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CDAA5899-B73C-4690-853E-B5400F034BE1"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:netgear:ex3800_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8B16C884-E17F-4E30-8027-A6CF1E489309", "versionEndExcluding": "1.0.0.66"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:netgear:ex3800:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CC5488D9-651C-4BAB-A141-06B816690D42"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:netgear:ex6100_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F28E1B99-7B65-4876-96B4-267CAE21D8F5", "versionEndExcluding": "1.0.2.20"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:netgear:ex6100:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "AB84CD03-765C-4D4F-A176-364F8E72A4E7"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:netgear:ex6120_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10486221-D787-4403-963E-FADEF2451B77", "versionEndExcluding": "1.0.0.34"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:netgear:ex6120:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8C6DFDB6-1D7A-459A-8D30-FD4900ED718B"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:netgear:ex6150_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "66193CFA-4E07-4905-B41A-C1986B830C71", "versionEndExcluding": "1.0.0.36"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:netgear:ex6150:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "46452E97-9347-4788-9570-1EECECC7255E"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:netgear:ex6200_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D4BC0A4D-0C9D-47AD-9A9A-3416E812EC7D", "versionEndExcluding": "1.0.3.84"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:netgear:ex6200:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "3186CC67-B567-4A0C-BD2C-0433716FBD1B"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:netgear:ex7000_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42A19A73-B5FC-4D14-82D0-2128D3E7178B", "versionEndExcluding": "1.0.0.60"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:netgear:ex7000:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9F45B620-60B8-40F3-A055-181ADD71EFFF"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "cve@mitre.org"}