First published: Wed Aug 21 2019(Updated: )
The booking-sms plugin before 1.1.0 for WordPress has XSS.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mediaburst Booking Calendar Sms | <1.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18555 is classified as a medium severity XSS vulnerability affecting the booking-sms plugin for WordPress.
To fix CVE-2017-18555, update the booking-sms plugin to version 1.1.0 or later.
CVE-2017-18555 presents a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
All versions of the booking-sms plugin prior to 1.1.0 are affected by CVE-2017-18555.
The vendor of the affected software for CVE-2017-18555 is Mediaburst.