Back to Database
Status published
Medium
CVE-2017-18498
The simple-job-board plugin before 2.4.4 for WordPress has reflected XSS...
Vulnerability Description
The simple-job-board plugin before 2.4.4 for WordPress has reflected XSS via keyword search.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-18498
Credits & Attribution
No credits recorded in the NVD database.
More from presstigers
View All →CVE-2025-14353
ZIP Code Based Content Protection <= 1.0.2 - Unauthenticated SQL Injection via 'zipcode' Parameter
High
7.5
CVE-2025-14039
Simple Folio <= 1.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'Client name' and 'Link' Meta Fields
Medium
6.4
CVE-2025-12151
Simple Folio <= 1.1.0 - Authenticated (Subscriber+) Stored Cross-Site Scripting
Medium
6.4
CVE-2024-7351
Simple Job Board <= 2.12.3 - Authenticated (Editor+) PHP Object Injection
High
7.2
CVE-2024-1813
Simple Job Board <= 2.11.0 - Unauthenticated PHP Object Injection via Job Application Fields
Critical
9.8
Affected Vendor
presstigers
View all reports →Affected Software
simple job board
Vulnerable Versions:
0
Timeline
Official Publish:
August 13th, 2019
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.