vendor:
phpMyChat
by:
sysbug
7.5
CVSS
HIGH
Remote Code Execution
Unknown
CWE
Product Name: phpMyChat
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Platforms Tested:
Unknown
phpMyChat remote sploit
The phpMyChat application is vulnerable to a remote code execution vulnerability. This exploit allows an attacker to dump the MySQL database credentials and gain administrative access to the application.
Mitigation:
Update to the latest version of phpMyChat to patch this vulnerability. Additionally, restrict access to the application from unauthorized users.