---
id: CVE-2026-82488
title: A vulnerability was identified in Beetel 450TC3 01.00.00_01
summary: >-
  A vulnerability was identified in Beetel 450TC3 01.00.00_01. This
  vulnerability affects unknown code of the component User Management. The
  manipulation of the argument Username leads to cross site scripting. The
  attack is possible to be …
severity: low
cvss: 3.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N'
cwe:
  - CWE-79
  - CWE-94
published: '2026-08-30'
updated: '2026-08-30'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-82488'
references:
  - url: >-
      https://github.com/Greejith-k/Stored-Cross-Site-Scripting-Stored-XSS-Vulnerability-in-Beetel-450TC3-Router
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-82488'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/888564'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/397038'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/397038/cti'
    label: cna@vuldb.com
tags:
  - nvd
ingestedAt: '2026-08-30T17:55:39.705Z'
epss: 0.00331
epssPercentile: 0.23536
---

## Overview

A vulnerability was identified in Beetel 450TC3 01.00.00_01. This vulnerability affects unknown code of the component User Management. The manipulation of the argument Username leads to cross site scripting. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
