Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Phpmychat\-Plus
(Ciprianmp)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 2 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2020-02-18 | CVE-2020-9265 | phpMyChat-Plus 1.98 is vulnerable to multiple SQL injections against the deluser.php Delete User functionality, as demonstrated by pmc_username. | Phpmychat\-Plus | 8.2 | ||
2019-12-20 | CVE-2019-19908 | phpMyChat-Plus 1.98 is vulnerable to reflected XSS via JavaScript injection into the password reset URL. In the URL, the pmc_username parameter to pass_reset.php is vulnerable. | Phpmychat\-Plus | N/A |