NA

CVE-2023-4495

Published: 04/10/2023 Updated: 06/10/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Easy Chat Server, in its 3.1 version and before, does not sufficiently encrypt user-controlled inputs, resulting in a Cross-Site Scripting (XSS) vulnerability stored via /registresult.htm (POST method), in the Resume parameter. The XSS is loaded from /register.ghp.

Vulnerable Product Search on Vulmon Subscribe to Product

easy chat server project easy chat server

Exploits

Easy Address Book Web Server version 16 suffers from buffer overflow and cross site scripting vulnerabilities ...