CVE-2017-10667: Zen-Cart Zen Cart
Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.
In index.php in Zen Cart 1.6.0, the products_id parameter can cause XSS.
Affected products
- Zen-Cart Zen Cart: version 1.6.0 only
Published 2017-06-29. Last modified 2026-06-17.