CVE-2026-82488: Beetel 450TC3 User Management cross site scripting
A vulnerability was identified in Beetel 450TC3 01.00.0001. This vulnerability affects unknown code of the component User Management. The manipulation of the argument Username leads to cross site scripting. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What access and interaction are required to exploit this issue?
The attacker needs low-level privileges and must induce user interaction. The attack can be performed remotely over the network.
Which version is identified as affected?
The vulnerability is reported in Beetel 450TC3 version 01.00.00_01, in the User Management component's handling of the Username argument.
Is exploit code available?
Yes. A public exploit is available and may be used.
Is a vendor fix or response available?
The available information states that the vendor was contacted early but did not respond. No fix or mitigation is specified.