Medium severity6.1NVD Advisory· Published Mar 2, 2020· Updated Jun 17, 2026
CVE-2019-20486
CVE-2019-20486
Description
An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple pages (setup.cgi and adv_index.htm) within the web management console are vulnerable to stored XSS, as demonstrated by the configuration of the UI language.
Affected products
3- cpe:2.3:o:netgear:wnr1000_firmware:1.1.0.54:*:*:*:*:*:*:*
- NETGEAR/WNR1000V4description
Patches
Vulnerability mechanics
References
1- www.nccgroup.trust/us/about-us/newsroom-and-events/blog/2019/august/the-netgear-wnr1000v4-round-2/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.