CVE-2018-14575: XSS
Published Mar 17, 2019
·Updated
Trash Bin plugin 1.1.3 for MyBB has cross-site scripting (XSS) via a thread subject and a cross-site request forgery (CSRF) via a post subject.
Affected Software
1 affected component
MyBB Trash Bin Mybb=1.1.3
Event History
Mar 17, 2019
CVE Published
via MITRE·09:19 PM
Data Sourced
via MITRE·09:19 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for the Trash Bin plugin in MyBB?
The vulnerability ID for the Trash Bin plugin in MyBB is CVE-2018-14575.
2
What is the severity of CVE-2018-14575?
The severity of CVE-2018-14575 is high with a CVSS score of 8.8.
3
What is the affected software?
The affected software is MyBB Trash Bin plugin 1.1.3.
4
How does the vulnerability in Trash Bin plugin manifest?
The vulnerability in Trash Bin plugin manifests as cross-site scripting (XSS) through a thread subject and cross-site request forgery (CSRF) through a post subject.
5
Where can I find more information about CVE-2018-14575?
You can find more information about CVE-2018-14575 at the following references: [reference link1], [reference link2], [reference link3].