Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 13 Sep 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. This affects an unknown part of the component Anchor Tag Handler. Performing a manipulation results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks. | |
| Title | Totolink A3002MU Anchor Tag cross site scripting | |
| First Time appeared |
Totolink
Totolink a3002mu |
|
| Weaknesses | CWE-79 CWE-94 |
|
| CPEs | cpe:2.3:a:totolink:a3002mu:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Totolink
Totolink a3002mu |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-13T23:15:14.381Z
Reserved: 2026-09-12T19:30:25.526Z
Link: CVE-2026-90604
No data.
No data.
No data.
OpenCVE Enrichment
No data.