CVE-2019-25613

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
22/03/2026
Last modified:
23/03/2026

Description

Easy Chat Server 3.1 contains a denial of service vulnerability that allows remote attackers to crash the application by sending oversized data in the message parameter. Attackers can establish a session via the chat.ghp endpoint and then send a POST request to body2.ghp with an excessively large message parameter value to cause the service to crash.