RSS   Vulnerabilities for 'Sleeperchat'   RSS

2006-01-25
 
CVE-2006-0416

 

 
SleeperChat 0.3f and earlier allows remote attackers to bypass authentication and create new entries via the txt parameter to (1) chat_no.php and (2) chat_if.php.

 
 
CVE-2006-0415

 

 
Cross-site scripting (XSS) vulnerability in index.php in SleeperChat 0.3f and earlier allows remote attackers to inject arbitrary web script or HTML via the pseudo parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top