CVE-2016-6204: Siemens Sinema Remote Connect Server

Medium severity, CVSS 6.1. EPSS: 1.6% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in the integrated web server in Siemens SINEMA Remote Connect Server before 1.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.

Affected products

  • Siemens Sinema Remote Connect Server: up to and including 1.1

Published 2016-07-22. Last modified 2026-06-17.