vendor:
phpMyChat Plus
by:
AutoSec Tools
N/A
CVSS
CRITICAL
Blind SQL Injection, Local File Inclusion
CWE
Product Name: phpMyChat Plus
Affected Version From: 1.93
Affected Version To: 1.93
Patch Exists: NO
Related CWE:
CPE: phpmychat:plus:1.93
Platforms Tested: Windows Vista + XAMPP
2011
phpMyChat Plus 1.93 Vulnerabilities
A SQL injection vulnerability in phpMyChat Plus 1.93 can be exploited to extract arbitrary data. A local file inclusion vulnerability in phpMyChat Plus 1.93 can be exploited to include arbitrary files.