CVE-2017-18507: XSS
Published Aug 13, 2019
·Updated
The wp-live-chat-support plugin before 7.1.05 for WordPress has XSS.
Affected Software
1 affected component
3CX Live Chat Wordpress<7.1.05
Event History
Aug 13, 2019
CVE Published
via MITRE·04:34 PM
Data Sourced
via MITRE·04:34 PM
Description
Frequently Asked Questions
1
What is CVE-2017-18507?
CVE-2017-18507 is a vulnerability in the wp-live-chat-support plugin before version 7.1.05 for WordPress that allows for cross-site scripting (XSS) attacks.
2
How severe is CVE-2017-18507?
CVE-2017-18507 has a severity rating of 6.1, which is considered medium.
3
Which software versions are affected by CVE-2017-18507?
Versions prior to 7.1.05 of the wp-live-chat-support plugin for WordPress are affected by CVE-2017-18507.
4
How can I fix CVE-2017-18507?
To fix CVE-2017-18507, update the wp-live-chat-support plugin to version 7.1.05 or newer.
5
Where can I find more information about CVE-2017-18507?
More information about CVE-2017-18507 can be found at the official WordPress plugin page: https://wordpress.org/plugins/wp-live-chat-support/#developers