CVE-2025-25876: SQL Injection
Published Feb 21, 2025
·Updated
A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /delete.php. The attack can use SQL injection to obtain sensitive data.
Affected Software
2 affected components
itsourcecode Simple ChatBox<=1.0
Angeljudesuarez Simple Chatbox=1.0
Event History
Feb 21, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-25876?
CVE-2025-25876 is a critical vulnerability due to its exploitation potential through SQL injection.
2
How do I fix CVE-2025-25876?
To fix CVE-2025-25876, you should update to a patched version of ITSourcecode Simple ChatBox beyond version 1.0.
3
What products are affected by CVE-2025-25876?
CVE-2025-25876 affects ITSourcecode Simple ChatBox versions up to 1.0.
4
What type of attack is related to CVE-2025-25876?
CVE-2025-25876 is associated with SQL injection attacks that can lead to data leaks.
5
Which file in ITSourcecode Simple ChatBox contains the vulnerability in CVE-2025-25876?
The vulnerability in CVE-2025-25876 is found in the /delete.php file.