PT-2026-5462 · D Link · Dsl-6641K

Tian

·

Published

2026-01-30

·

Updated

2026-01-31

·

CVE-2026-1705

CVSS v2.0

3.3

Low

VectorAV:N/AC:L/Au:M/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions D-Link DSL-6641K version N8.TR069.20131126
Description A flaw exists within the Web Interface component of the device, specifically in the ad virtual server vdsl function. Manipulating the Name argument can lead to cross site scripting. This issue is remotely exploitable, and details about the exploit are publicly available.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2026-1705

Affected Products

Dsl-6641K