Home/Product/echatserver easy chat server
Product

echatserver easy chat server

16 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2018-25221
<= 3.1
EChat Server 3.1 contains a buffer overflow vulnerability in the chat.ghp endpoint that allows remote attackers to execute arbitra
9.8CRITICAL
CVE-2019-25613
all versions
Easy Chat Server 3.1 contains a denial of service vulnerability that allows remote attackers to crash the application by sending o
7.5HIGH
CVE-2024-0695
all versions
A vulnerability, which was classified as problematic, has been found in EFS Easy Chat Server 3.1. Affected by this issue is some u
4.3MEDIUM
CVE-2023-4497
<= 3.1
Easy Chat Server, in its 3.1 version and before, does not sufficiently encrypt user-controlled inputs, resulting in a Cross-Site S
6.1MEDIUM
CVE-2023-4496
<= 3.1
Easy Chat Server, in its 3.1 version and before, does not sufficiently encrypt user-controlled inputs, resulting in a Cross-Site S
6.1MEDIUM
CVE-2023-4495
<= 3.1
Easy Chat Server, in its 3.1 version and before, does not sufficiently encrypt user-controlled inputs, resulting in a Cross-Site S
6.1MEDIUM
CVE-2023-4494
all versions
Stack-based buffer overflow vulnerability in Easy Chat Server 3.1 version. An attacker could send an excessively long username str
9.8CRITICAL
CVE-2022-44939
all versions
Efs Software Easy Chat Server Version 3.1 was discovered to contain a DLL hijacking vulnerability via the component TextShaping.dl
7.8HIGH
CVE-2019-20502
all versions
An issue was discovered in EFS Easy Chat Server 3.1. There is a buffer overflow via a long body2.ghp message parameter.
7.5HIGH
CVE-2017-9557
>= 2.0 and <= 3.1
register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1 allows remote attackers to discover passwords by sending the use
7.5HIGH
CVE-2017-9544
>= 2.0 and <= 3.1
There is a remote stack-based buffer overflow (SEH) in register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1. By sendi
9.8CRITICAL
CVE-2017-9543
>= 2.0 and <= 3.1
register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1 allows remote attackers to reset arbitrary passwords via a craft
7.5HIGH
CVE-2006-6933
all versions
Easy Chat Server 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attacke
CVE-2004-2467
all versions
chat.ghp in Easy Chat Server 1.2 allows remote attackers to add a large number of fake users, then eventually cause a denial of se
CVE-2004-2466
all versions
chat.ghp in Easy Chat Server 1.2 allows remote attackers to cause a denial of service (server crash) via a long username parameter
CVE-2004-2465
all versions
Cross-site scripting (XSS) vulnerability in chat.ghp in Easy Chat Server 1.2 allows remote attackers to inject arbitrary web scrip
threatengine.sh