CVE-2017-18590: XSS
Published Aug 27, 2019
·Updated
The timesheet plugin before 0.1.5 for WordPress has multiple XSS issues.
Affected Software
1 affected component
Bestwebsoft Timesheet Wordpress<0.1.5
Event History
Aug 27, 2019
CVE Published
via MITRE·11:52 AM
Data Sourced
via MITRE·11:52 AM
Description
Frequently Asked Questions
1
What is CVE-2017-18590?
CVE-2017-18590 is a vulnerability in the timesheet plugin before version 0.1.5 for WordPress, which allows for multiple XSS (Cross-site Scripting) issues.
2
How severe is CVE-2017-18590?
CVE-2017-18590 has a severity rating of 6.1 (medium).
3
What software is affected by CVE-2017-18590?
The timesheet plugin before version 0.1.5 for WordPress is affected by CVE-2017-18590.
4
How can I fix CVE-2017-18590?
To fix CVE-2017-18590, you should update the timesheet plugin to version 0.1.5 or newer.
5
Where can I find more information about CVE-2017-18590?
You can find more information about CVE-2017-18590 on the WordPress plugin page: https://wordpress.org/plugins/timesheet/#developers