Intelligence View
⚡ tsecurity.de Intelligence
CVE-2018-25247 | Like Plugin 3.0.0 on MyBB Post cross site scripting (Exploit 45179 / EUVD-2018-21746)
A vulnerability was found in Like Plugin 3.0.0 on MyBB. It has been classified as problematic. Affected by this issue is some unknown functionality of the…
A vulnerability was found in Like Plugin 3.0.0 on MyBB. It has been classified as problematic. Affected by this issue is some unknown functionality of the component Post Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2018-25247. The attack is possible to be carried out remotely. Moreover, an exploit is present.
This vulnerability is uniquely identified as CVE-2018-25247. The attack is possible to be carried out remotely. Moreover, an exploit is present.
2. Cyber Threat Intelligence & Forensik
IoC Intelligence (1 Indikatoren)
CVE-2018-25247
Exploit & Remediation Lifecycle Timeline
CVE-2018-25247Entdeckung & Meldung
Schwachstelle identifiziert & registriert
Sicherheits-Advisory
Offizielle Warnung & CVE-Zuweisung
Exploit / PoC
Öffentlicher Nachweis/Code verfügbar (Exploit-DB/EUVD)
In-the-Wild Ausnutzung
Keine Massenausnutzung gemeldet
Patch & Schutzmaßnahmen
Noch kein offizieller Patch dokumentiert
Exploit Weaponization & Public PoC Radar
HIGH EXPLOITABLE · Index 40/100Exploit-DB
Kein EDB-EintragInteraktion
Interaktion nötigAuthentifizierung
Nicht erforderlich3. Compliance, SLA & Vendor Adherence
CISA-SSVC-Triage (vulnrichment)CVE-2018-25247
Exploitation: poc (PoC verfügbar)Automatable: no (Nicht automatisierbar)Technical Impact: partial (Teilweise)
Quelle: CISA-ADP vulnrichment · Stand 2026-04-06T18:58:19.325671Z · CISA Coordinator
Advisory Radar
Workaround & Virtual-Patching empfohlen
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Öffentliche PoCs existieren. Isolieren Sie das System oder wenden Sie Micro-Segmentierungsregeln an, bis offizielle Patches vorliegen.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Web Referencecommunity.mybb.com
2 öffentliche Exploit-Referenz(en) detektiert (Exploit Database (EDB)).
PoC einsehen