CVE-2017-1000059

MEDIUM

Live Helper Chat <2.06v - XSS

Title source: llm

Description

Live Helper Chat version 2.06v and older is vulnerable to Cross-Site Scripting in the HTTP Header handling resulting in the execution of any user provided Javascript code in the session of other users.

Scores

CVSS v3 6.1
EPSS 0.0034
EPSS Percentile 56.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-79
Status published
Products (2)
livehelperchat/live_helper_chat < 2.06
n/a/n/a
Published Jul 17, 2017
Tracked Since Feb 18, 2026