Detects 'Cross-Site Scripting (XSS)' vulnerability in Error Log Viewer plugin for WordPress affects v. before 1.0.6.


The Error Log Viewer plugin is a useful tool for WordPress users to easily view and manage their website's error logs. It is designed to help website administrators stay on top of issues that might arise with their site and troubleshoot problems quickly. This plugin is especially useful for users who have installed a lot of third-party plugins and are running complex websites with a lot of moving parts.

One particular vulnerability that has been detected in this plugin is CVE-2017-18562. This vulnerability is caused by a lack of sanitization in the user input. Malicious actors can exploit this vulnerability by injecting malicious code into the error log, which can then execute on the website. This can lead to unauthorized access to sensitive data or complete takeover of the website.

If exploited, this vulnerability can have serious consequences for both website owners and their users. It can lead to the theft of sensitive data, including login credentials and payment information, as well as the injection of malicious code that can harm the website's visitors. The vulnerability also presents an opportunity for attackers to gain unauthorized access to website resources and potentially take over the website completely.

