The new firmware version fixes XSS and CSRF vulnerabilities

Mar 15, 2017 13:59 GMT  ·  By

NETGEAR has rolled out a new firmware package compatible with its XS708Ev2  switch model, namely version 1.0.0.15, which resolves vulnerabilities that could have caused Cross-site Scripting (XSS) and cross-site request forgery (CSRF) attacks.

In addition to that, this release manages to remove the bug that prevented fragmented packets from being forwarded and implement more secure encryption algorithm to work with new versions of Plus Utility.

Moreover, NETGEAR’s update also adds a Switch Management Mode to the Web GUI; this new option allows users to manage the switch from a Web browser only or both Web browser and Plus Utility.

When it comes to installation, first of all, check your switch’s current firmware so that it isn’t newer or matching the present version, and if everything is OK, save and unzip the downloadable archive.

Now, establish a wired connection between the XS708Ev2 unit and your computer, and follow all instructions highlighted on the description page for a successful upgrade.

Last but not least, bear in mind that interrupting the upgrade process by removing the Ethernet/power cable from either device, closing the web browser or in any other way will lead to an update failure that might cause various malfunctions.

That said, download NETGEAR XS708Ev2 + Switch Firmware 1.0.0.15, take into account all the aspects mentioned above, apply the package, and enjoy the changes this new release brings about.