CVE-2018-14575
CVE-2018-14575
Trash Bin plugin 1.1.3 for MyBB has cross-site scripting (XSS) via a thread subject and a cross-site request forgery (CSRF) via a post subject.
Affected products
n/a · n/apublic PoCs found — 3
cve_referencepacketstormsecurity.com/files/151704/MyBB-Trash-Bin-1.1.3-Cross-Site-Request-Forgery-Cross-Site-Scripting.htmlunverifiedcve_referencewww.exploit-db.com/exploits/46384/unverifiedexploitdbwww.exploit-db.com/exploits/46384unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →