CVE-2004-2715
PHPMyChat 0.14.5 - Improper Authentication via do_not_login Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-2715. PoCs published by HEX.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in phpMyChat by manipulating form parameters to change the admin password without proper authentication. It leverages insufficient input validation in the 'edituser.php3' script.
Description
edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by setting the do_not_login parameter to false.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in phpMyChat by manipulating form parameters to change the admin password without proper authentication. It leverages insufficient input validation in the 'edituser.php3' script.