First published: Fri Feb 21 2025(Updated: )
A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /message.php. The attack can use SQL injection to obtain sensitive data.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ITSourcecode Simple ChatBox | <=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25875 is classified as a high severity vulnerability due to its potential for SQL injection attacks.
To fix CVE-2025-25875, you should update to a version of ITSourcecode Simple ChatBox that is greater than 1.0 or implement input validation and parameterized queries to prevent SQL injection.
CVE-2025-25875 enables SQL injection attacks which can be used to obtain sensitive data from the application.
CVE-2025-25875 affects ITSourcecode Simple ChatBox versions up to and including 1.0.
CVE-2025-25875 is located in the /message.php file of the ITSourcecode Simple ChatBox application.