|Category:||Web application abuses|
|Title:||TP-Link TL-MR3220 Cross-Site Scripting Vulnerability|
|Summary:||This host is running TP-Link TL-MR3220; Wireless N Router and is prone to cross site scripting vulnerability.|
This host is running TP-Link TL-MR3220
Wireless N Router and is prone to cross site scripting vulnerability.
The flaw exists due to an insufficient
validation of user supplied input via Description field in Wireless MAC
Successful exploitation will allow remote
users to execute arbitrary script code in the browser of an unsuspecting user
in the context of the affected site. This may allow the attacker to steal
cookie-based authentication credentials and launch other attacks.
Impact Level: Application
No solution or patch is available as of
25th January, 2018. Information regarding this issue will be updated once
solution details are available. For updates refer to http://www.tp-link.com
Common Vulnerability Exposure (CVE) ID: CVE-2017-15291|
|Copyright||Copyright (C) 2017 Greenbone Networks GmbH|
|This is only one of 58962 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.