CVE-2017-18555: XSS
Published Aug 21, 2019
·Updated
The booking-sms plugin before 1.1.0 for WordPress has XSS.
Affected Software
1 affected component
Mediaburst Booking Calendar Wordpress<1.1.0
Event History
Aug 21, 2019
CVE Published
via MITRE·12:50 PM
Data Sourced
via MITRE·12:50 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-18555?
CVE-2017-18555 is classified as a medium severity XSS vulnerability affecting the booking-sms plugin for WordPress.
2
How do I fix CVE-2017-18555?
To fix CVE-2017-18555, update the booking-sms plugin to version 1.1.0 or later.
3
What specific vulnerability does CVE-2017-18555 present?
CVE-2017-18555 presents a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
4
Which versions of the booking-sms plugin are affected by CVE-2017-18555?
All versions of the booking-sms plugin prior to 1.1.0 are affected by CVE-2017-18555.
5
Who is the vendor of the affected software in CVE-2017-18555?
The vendor of the affected software for CVE-2017-18555 is Mediaburst.