CVE-2004-2715

PHP Heaven Phpmychat - Authentication Bypass

Title source: rule

Description

edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by setting the do_not_login parameter to false.

Exploits (1)

exploitdb WORKING POC VERIFIED
by HEX · htmlwebappsphp
https://www.exploit-db.com/exploits/24216

Scores

EPSS 0.0671
EPSS Percentile 91.1%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

php_heaven/phpmychat

Timeline

Published Dec 31, 2004
Tracked Since Feb 18, 2026