The web interface of the 'Nighthawk R6220 AC1200 Smart Wi-Fi Router' is vulnerable to a CRLF Injection attack that can be leveraged to perform Reflected XSS and HTML Injection. A malicious unauthenticated attacker can exploit this vulnerability using a specially crafted URL. This affects firmware versions: V1.1.0.112_1.0.1, V1.1.0.114_1.0.1.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/dest-3/NETGEAR/tree/main/CVE-2022-47052 | Exploit Third Party Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
            
            
 
  | 
    
History
                    No history.
Information
                Published : 2023-01-26 21:18
Updated : 2023-08-08 14:21
NVD link : CVE-2022-47052
Mitre link : CVE-2022-47052
CVE.ORG link : CVE-2022-47052
JSON object : View
Products Affected
                netgear
- ac1200_r6220
 - ac1200_r6220_firmware
 
CWE
                
                    
                        
                        CWE-74
                        
            Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
