PT-2026-38629 · Unknown · Simple Chat System

Mickey-Ben

·

Published

2026-05-08

·

Updated

2026-05-10

·

CVE-2026-8125

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Simple Chat System version 1.0
Description An issue exists in the 'sendMessage.php' file where improper manipulation of argument type, length, or business parameter validity allows for SQL injection. This flaw can be exploited remotely.
Recommendations As a temporary workaround, restrict access to the 'sendMessage.php' file until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-8125

Affected Products

Simple Chat System