Vulnerabilities > TP Link > Archer Cr700 Firmware

DATE CVE VULNERABILITY TITLE RISK
2019-05-15 CVE-2016-10719 Cross-site Scripting vulnerability in Tp-Link Archer Cr700 Firmware 1.0.6
TP-Link Archer CR-700 1.0.6 devices have an XSS vulnerability that can be introduced into the admin account through a DHCP request, allowing the attacker to steal the cookie information, which contains the base64 encoded username and password.
network
low complexity
tp-link CWE-79
6.1