CVE-2002-2391
Webchat - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in index.php of WebChat 1.5 included in XOOPS 1.0 allows remote attackers to execute arbitrary SQL commands via the roomid parameter.
References (4)
Scores
EPSS
0.0037
EPSS Percentile
58.5%
Classification
CWE
CWE-89
Status
draft
Affected Products (2)
webchat.org/webchat
xoops/xoops
Timeline
Published
Dec 31, 2002
Tracked Since
Feb 18, 2026