6.3
CVSSv3

CVE-2025-0882

CVSSv4: 5.3 | CVSSv3: 6.3 | CVSSv2: 6.5 | VMScore: 630 | EPSS: 0.00036 | KEV: Not Included
Published: 30/01/2025 Updated: 30/01/2025

Vulnerability Summary

SQL Injection Vulnerability in Code-Projects Chat System 1.0 via User Parameter

A critical vulnerability exists in code-projects Chat System versions up to 1.0. The security flaw is located in the /user/addnewmember.php file. By manipulating the user argument, an attacker can perform a SQL injection attack. This vulnerability allows remote attackers to exploit the system. The details of this security issue have been made public, which means potential attackers could use this information to compromise the application.

Vulnerable Product Search on Vulmon Subscribe to Product

code-projects chat system