CVE-2017-18556: XSS
Published Aug 21, 2019
·Updated
The bws-google-analytics plugin before 1.7.1 for WordPress has multiple XSS issues.
Affected Software
1 affected component
Bestwebsoft Google Analytics Wordpress<1.7.1
Event History
Aug 21, 2019
CVE Published
via MITRE·12:51 PM
Data Sourced
via MITRE·12:51 PM
Description
Frequently Asked Questions
1
What is CVE-2017-18556?
CVE-2017-18556 is a vulnerability in the bws-google-analytics plugin before version 1.7.1 for WordPress that allows for multiple XSS (cross-site scripting) attacks.
2
What is the severity of CVE-2017-18556?
CVE-2017-18556 has a severity rating of 6.1, which is classified as medium.
3
What software versions are affected by CVE-2017-18556?
Versions up to exclusive 1.7.1 of the Bestwebsoft Google Analytics plugin for WordPress are affected by CVE-2017-18556.
4
How can I fix CVE-2017-18556?
To fix CVE-2017-18556, update the bws-google-analytics plugin to version 1.7.1 or later.
5
Where can I find more information about CVE-2017-18556?
More information about CVE-2017-18556 can be found on the WordPress plugin page: [link](https://wordpress.org/plugins/bws-google-analytics/#developers).