A vulnerability was determined in code-projects Simple ChatBox up to 1.0. This affects an unknown part of the file /chatbox/insert.php of the component Endpoint. Executing a manipulation of the argument msg can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
Metrics
Affected Vendors & Products
References
History
Mon, 13 Apr 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Code-projects
Code-projects simple Chatbox |
|
| Vendors & Products |
Code-projects
Code-projects simple Chatbox |
Mon, 13 Apr 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in code-projects Simple ChatBox up to 1.0. This affects an unknown part of the file /chatbox/insert.php of the component Endpoint. Executing a manipulation of the argument msg can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized. | |
| Title | code-projects Simple ChatBox Endpoint insert.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-13T04:45:13.164Z
Updated: 2026-04-13T04:45:13.164Z
Reserved: 2026-04-12T18:11:03.819Z
Link: CVE-2026-6161
No data.
Status : Awaiting Analysis
Published: 2026-04-13T05:16:05.630
Modified: 2026-04-13T15:01:43.663
Link: CVE-2026-6161
No data.