CVE-2017-17745: TP-Link Tl-SG108E Firmware

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in system_name_set.cgi in TP-Link TL-SG108E 1.0.0 allows authenticated remote attackers to submit arbitrary java script via the 'sysName' parameter.

Affected products

  • TP-Link Tl-SG108E Firmware: version 1.0.0 only

Published 2017-12-20. Last modified 2026-06-17.