CVE-2014-9517: D-Link Dcs-2103 Firmware

Medium severity, CVSS 4.3. EPSS: 2.4% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in D-link IP camera DCS-2103 with firmware before 1.20 allows remote attackers to inject arbitrary web script or HTML via the QUERY_STRING to vb.htm.

Affected products

  • D-Link Dcs-2103 Firmware: before 1.20 (fixed in 1.20)

Published 2015-01-05. Last modified 2026-06-17.