CVE-2012-6316: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the TP-LINK TL-WR841N router with firmware 3.13.9 Build 120201 Rel.54965n and earlier allow remote administrators to inject arbitrary web script or HTML via the (1) username or (2) pwd parameter to userRpm/NoipDdnsRpm.htm.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-6316?
CVE-2012-6316 is classified as a high severity vulnerability due to its potential for remote code execution through cross-site scripting.
How do I fix CVE-2012-6316?
To fix CVE-2012-6316, update the TP-LINK TL-WR841N router firmware to a version later than 3.13.9.
What devices are affected by CVE-2012-6316?
CVE-2012-6316 affects the TP-LINK TL-WR841N router with firmware versions 3.13.9 and earlier.
What type of vulnerability is CVE-2012-6316?
CVE-2012-6316 is a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
Can CVE-2012-6316 be exploited remotely?
Yes, CVE-2012-6316 can be exploited remotely by manipulating the username or password fields in the router's web interface.