1. Symantec-Broadcom-Horizontal/
  2. Security Response/
  3. Attack Signatures/
  4. Attack: WordPress WP Live Chat Support Plugin XSS

Attack: WordPress WP Live Chat Support Plugin XSS

Severity: High

This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.

Description

This signature detects attempts to exploit a XSS vulnerability in WordPress WP Live Chat Support Plugin.

Additional Information

Wordpress WP Live Chat Support Plugin provides a cost effective way of entering into a conversation with website visitors for website admins. It suffers from a XSS vulnerability that can be exploited to insert malicious data on the website running the vulnerable version of the plugin.

Affected

  • Versions of plugin before version 8.0.27

Response

The plugin should be uninstalled immediately
  • Twitter
  • Facebook
  • LinkedIn
  • Google+
  • YouTube