CVE-2004-2715

PHP Heaven Phpmychat - Authentication Bypass

Title source: rule

Description

edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by setting the do_not_login parameter to false.

Exploits (1)

exploitdb WORKING POC VERIFIED
by HEX · htmlwebappsphp
https://www.exploit-db.com/exploits/24216

Scores

EPSS 0.0671
EPSS Percentile 91.3%

Details

CWE
CWE-287
Status published
Products (1)
php_heaven/phpmychat 0.14.5
Published Dec 31, 2004
Tracked Since Feb 18, 2026