EIP-2026-102065

PRE-CVE

TP-Link TL-PS110U / TL-PS110P - Cross-Site Scripting

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-102065. PoCs published by b0telh0.

AI-analyzed exploit summary This is a writeup detailing a stored XSS vulnerability in TP-Link TL-PS110U and TL-PS110P print servers. The vulnerability allows arbitrary script execution via the 'NDSContext' field in the NetWare NDS Settings area.

Description

TP-Link TL-PS110U / TL-PS110P - Cross-Site Scripting

Exploits (1)

exploitdb WRITEUP
by b0telh0 · textwebappshardware
https://www.exploit-db.com/exploits/17113

This is a writeup detailing a stored XSS vulnerability in TP-Link TL-PS110U and TL-PS110P print servers. The vulnerability allows arbitrary script execution via the 'NDSContext' field in the NetWare NDS Settings area.

Classification
Writeup 100%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: TP-Link TL-PS110U & TL-PS110P (Firmware versions: 9.08.47T 0016, 9.08.47T 0013, 6.03.35T 0007, 6.03.35T 0006, 6.03.35T 0005, 6.03.35T 0004, 8.03.30T 0013, 8.03.30T 0009, 8.03.30T 0008)
No auth needed
Prerequisites: Access to the vulnerable print server's web interface
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026