Back to search
CVE-2019-17207
Published: Oct 18, 2019
Modified: Aug 5, 2024
PUBLISHED
Description
A reflected XSS vulnerability was found in includes/admin/table-printer.php in the broken-link-checker (aka Broken Link Checker) plugin 1.11.8 for WordPress. This allows unauthorized users to inject client-side JavaScript into an admin-only WordPress page via the wp-admin/tools.php?page=view-broken-links s_filter parameter in a search action.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://wordpress.org/plugins/broken-link-checker/#developers
x_refsource_MISC
20191015 Reflected XSS via Broken Link Checker v.1.11.8 WordPress Plugin
mailing-list
x_refsource_FULLDISC
https://wpvulndb.com/vulnerabilities/9917
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now