CVE-2017-11647: Netcomm 4gt101w Bootloader

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

NetComm Wireless 4GT101W routers with Hardware: 0.01 / Software: V1.1.8.8 / Bootloader: 1.1.3 are vulnerable to stored cross-site scripting attacks. Creating an SSID with an XSS payload results in successful exploitation.

Affected products

  • Netcomm 4gt101w Bootloader: version 1.1.3 only
  • Netcomm 4gt101w Software: version 1.1.8.8 only

Published 2017-07-28. Last modified 2026-06-17.