CVE-2016-3150
medium
📛 Threat Title
CVE-2016-3150
Description
Cross-site scripting (XSS) vulnerability in wallpaper.php in the Base Unit in Barco ClickShare CSC-1 devices with firmware before 01.09.03, CSM-1 devices with firmware before 01.06.02, and CSE-200 devices with firmware before 01.03.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
wallpaper.php
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/wallpaper.php
IOC database
- Type
- domain
- Value
wallpaper.php- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat CVE-2016-3150
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/wallpaper.php
References (4)
- cve@mitre.org NVD Recent CVEs
-
NVD detail: CVE-2016-3150
NVD Recent CVEs
Cross-site scripting (XSS) vulnerability in wallpaper.php in the Base Unit in Barco ClickShare CSC-1 devices with firmware before 01.09.03, CSM-1 devices with firmware before 01.06.02, and CSE-200 devices with firmware before 01.03.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
Remediations (11)
-
web:translate.google.com
Google's service, offered free of charge, instantly translates words, phrases, and web pages between English and over 100 other languages.
-
web:www.tenable.com
Apply risk-based patch management to mitigate threats Close the gap between discovery and remediation . Get vast vulnerability coverage with 250k+ patches to automate prioritization and accelerate SLAs to reduce your exposure in clicks.
-
web:attack.mitre.org
This mitigation can be implemented through the following measures: Regular Operating System Updates Implementation: Apply the latest Windows security updates monthly using WSUS (Windows Server Update Services) or a similar patch management solution. Configure systems to check for updates automatically and schedule reboots during maintenance ...
-
web:www.cbsnews.com
A hacking group named ShinyHunters claimed responsibility for the Canvas breach and threatened to leak data involving 275 million individuals if schools did not pay a ransom.
-
web:www.cisco.com
This document describes a list of software versions that have incorporated fixes for Cisco IOS® XE Software Web UI Cisco bug ID CSCwh87343.
-
web:www.cve.org
At cve .org, we provide the authoritative reference method for publicly known information-security vulnerabilities and exposures
-
web:www.microsoft.com
A security vulnerability exists in Microsoft Office 2016 that could allow arbitrary code to run when a maliciously modified file is opened. This update resolves that vulnerability.
-
web:adaptiva.com
OneSite Patch is an autonomous patch management solution that remediates vulnerabilities and patches third-party applications, Windows, drivers, and BIOS.
-
web:zecurit.com
Get the complete breakdown of Microsoft's May 2026 Patch Tuesday. We analyze the latest security updates and all critical CVEs .
-
web:nvd.nist.gov
Please make use of the interactive search interfaces to find information in the database!
-
web:support.apple.com
Notification Services Available for: iPhone 8, iPhone 8 Plus, iPhone X, iPad 5th generation, iPad Pro 9.7-inch, and iPad Pro 12.9-inch 1st generation Impact: Notifications marked for deletion could be unexpectedly retained on the device Description: A logging issue was addressed with improved data redaction. CVE -2026-28950
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.