Medium severity6.1NVD Advisory· Published May 15, 2019· Updated Jun 17, 2026
CVE-2016-10719
CVE-2016-10719
Description
TP-Link Archer CR-700 1.0.6 devices have an XSS vulnerability that can be introduced into the admin account through a DHCP request, allowing the attacker to steal the cookie information, which contains the base64 encoded username and password.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:tp-link:archer_cr700_firmware:1.0.6:*:*:*:*:*:*:*
- TP-Link/Archer CR-700description
- Range: = 1.0.6
Patches
Vulnerability mechanics
References
1- packetstormsecurity.com/files/138881/TP-Link-Archer-CR-700-Cross-Site-Scripting.htmlnvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.