Medium severity6.1NVD Advisory· Published Mar 3, 2017· Updated May 13, 2026
CVE-2016-10201
CVE-2016-10201
Description
Cross-site scripting (XSS) vulnerability in Zoneminder 1.30 and earlier allows remote attackers to inject arbitrary web script or HTML via the format parameter in a download log request to index.php.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.openwall.com/lists/oss-security/2017/02/05/1nvdExploitMailing List
- www.foxmole.com/advisories/foxmole-2016-07-05.txtnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.