CVE-2010-0936

D-LINK DKVM-IP8 - Firmware 2282_dlinkA4_p8_20071213 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in auth.asp on the D-LINK DKVM-IP8 with firmware 2282_dlinkA4_p8_20071213 allows remote attackers to inject arbitrary web script or HTML via the nickname parameter.

Exploits (2)

exploitdb WRITEUP VERIFIED
by POPCORN · textremotehardware
https://www.exploit-db.com/exploits/33471
exploitdb WORKING POC
by POPCORN · textwebappshardware
https://www.exploit-db.com/exploits/11030

Scores

EPSS 0.0083
EPSS Percentile 74.3%

Classification

CWE
CWE-79
Status published

Affected Products (2)

d-link/dkvm-ip8
n/a/n/a

Timeline

Published Mar 08, 2010
Tracked Since Feb 18, 2026