S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 14, 2024

CVE-2017-18528 Scanner

CVE-2017-18528 scanner - Cross-Site Scripting (XSS) vulnerability in PDF & Print plugin for WordPress

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.2k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2017-18528
6.1
CVSS

The pdf-print plugin before 1.9.4 for WordPress has multiple XSS issues.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

The PDF & Print plugin for WordPress is a tool used to make web pages more printer-friendly by allowing users to generate PDF documents and print pages directly from the website. This plugin has been widely used by website developers and bloggers to enhance their websites' functionality and offer users a unique experience.

Recently, a vulnerability was detected that could affect the plugin's security, specifically CVE-2017-18528. This vulnerability is considered cross-site scripting (XSS), which means that a hacker can inject malicious scripts into an otherwise trusted website. 

If an attacker is able to exploit CVE-2017-18528, they can gain access to sensitive information and website functions, potentially allowing them to hijack the user's session, infect other website visitors with malware, or steal user credentials. They can also potentially cause the website to malfunction or be taken offline.

At s4e.io, we offer pro features that allow users to scan their websites for vulnerabilities automatically. By doing so, users can detect and resolve potential problems before they become an issue. Our platform is designed to make website security easy and accessible for everyone, and we're always available to assist with any questions or concerns. So, if you're looking for a secure and reliable security monitoring tool, s4e.io is the perfect solution for you.

 

REFERENCES

Solution Advice

There are several precautions that can be taken to protect against this vulnerability, including:

  • Keeping the plugin up-to-date with the latest version.
  • Regularly scanning websites with a security monitoring tool such as securityforeveryone.com.
  • Enabling the security features available in WordPress, such as two-factor authentication and captcha.
  • Training users on how to identify and avoid phishing attacks.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2017-18528 scanner - Cross-Site Scripting (XSS) vulnerability in PDF & Print plugin for WordPress | S4E