Description
TP-Link Archer CR-700 1.0.6 devices have an XSS vulnerability that can be introduced into the admin account through a DHCP request, allowing the attacker to steal the cookie information, which contains the base64 encoded username and password.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2016-1718 | TP-Link Archer CR-700 1.0.6 devices have an XSS vulnerability that can be introduced into the admin account through a DHCP request, allowing the attacker to steal the cookie information, which contains the base64 encoded username and password. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T03:30:20.291Z
Reserved: 2018-04-05T00:00:00.000Z
Link: CVE-2016-10719
No data.
Status : Modified
Published: 2019-05-15T14:29:00.453
Modified: 2024-11-21T02:44:35.360
Link: CVE-2016-10719
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD