Cross Site Scripting Vulnerability in D-Link DCS-6010L Management Application
CVE-2025-8155
What is CVE-2025-8155?
A vulnerability has been identified in the management application of the D-Link DCS-6010L model, specifically within the /vb.htm file. This security flaw allows for cross site scripting (XSS), which can be exploited remotely by manipulating the 'paratest' argument. It is important to note that this vulnerability affects devices that are no longer supported by D-Link, making them particularly susceptible to exploitation. The details of this exploit have been publicly disclosed, increasing the risk for users operating this version of the device.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
DCS-6010L 1.15.03
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved