Cross Site Scripting Vulnerability in Datacom DM4100 by Datacom
CVE-2026-7000
4.8MEDIUM
What is CVE-2026-7000?
A security vulnerability exists in the Datacom DM4100, specifically within the VLAN Page component. This weakness allows for Cross Site Scripting (XSS) attacks, where an attacker can manipulate the 'VLAN Name' argument to inject malicious scripts. As a result, the attack can be executed remotely, exposing users to potential data breaches and unauthorized actions. Despite early notifications regarding the exploit, the vendor has yet to respond.
Affected Version(s)
DM4100 1.3.6.1.4.1.3709
