Full title: TP-Link EAP Controller CSRF / Hard-Coded Key / XSS Vulnerabilities Category: web applications Platform: hardware TP-Link EAP suffers from hard-coded credential, cross site request forgery, cross site scripting, and other vulnerabilities. # 0day.today @ http://0day.today/