CVE-2015-6512

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
18/08/2015
Last modified:
12/04/2025

Description

SQL injection vulnerability in the get_messages function in server/plugins/chatroom/chatroom.php in FreiChat 9.6 allows remote attackers to execute arbitrary SQL commands via the time parameter to server/freichat.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:codelogic:freichat:9.6:*:*:*:*:*:*:*