CVE-2025-25875: SQL Injection
A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /message.php. The attack can use SQL injection to obtain sensitive data.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-25875?
CVE-2025-25875 is classified as a high severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-25875?
To fix CVE-2025-25875, you should update to a version of ITSourcecode Simple ChatBox that is greater than 1.0 or implement input validation and parameterized queries to prevent SQL injection.
What type of attack does CVE-2025-25875 enable?
CVE-2025-25875 enables SQL injection attacks which can be used to obtain sensitive data from the application.
Which software versions are affected by CVE-2025-25875?
CVE-2025-25875 affects ITSourcecode Simple ChatBox versions up to and including 1.0.
Where in the ITSourcecode Simple ChatBox is CVE-2025-25875 located?
CVE-2025-25875 is located in the /message.php file of the ITSourcecode Simple ChatBox application.