CVE-2019-20486: NETGEAR WNR1000 Firmware
Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.
An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple pages (setup.cgi and adv_index.htm) within the web management console are vulnerable to stored XSS, as demonstrated by the configuration of the UI language.
Affected products
- NETGEAR WNR1000 Firmware: version 1.1.0.54 only
Published 2020-03-02. Last modified 2026-06-17.