CVE-2017-10667: Zen-Cart Zen Cart

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

In index.php in Zen Cart 1.6.0, the products_id parameter can cause XSS.

Affected products

Published 2017-06-29. Last modified 2026-06-17.