PT-2025-7578 · Itsourcecode · Itsourcecode Simple Chatbox

Published

2025-02-21

·

Updated

2025-02-21

·

CVE-2025-25875

CVSS v3.1

6.4

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:L
Name of the Vulnerable Software and Affected Versions ITSourcecode Simple ChatBox versions up to 1.0
Description A vulnerability was found in ITSourcecode Simple ChatBox, affecting unknown code of the file /message.php. The attack can use SQL injection to obtain sensitive data.
Recommendations For ITSourcecode Simple ChatBox versions up to 1.0, update to the latest version. Use strong and unique passwords. Consider implementing additional security measures such as input validation and sanitization to prevent SQL injection attacks. As a temporary workaround, consider restricting access to the /message.php file until a patch is available.

Exploit

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-25875

Affected Products

Itsourcecode Simple Chatbox