Code-Projects Simple ChatBox是Code-Projects开源的一个简单聊天框系统。 code-projects Simple ChatBox 1.0及之前版本存在代码注入漏洞,该漏洞源于对文件/chatbox/insert.php中参数msg的错误操作,可能导致跨站脚本攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Simple ChatBox | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-6163 | 7.3 HIGH | code-projects Lost and Found Thing Management catageory.php sql injection |
| CVE-2026-6148 | 7.3 HIGH | code-projects Vehicle Showroom Management System MonthTotalReportUpdateFunction.php sql in |
| CVE-2026-6149 | 7.3 HIGH | code-projects Vehicle Showroom Management System BookVehicleFunction.php sql injection |
| CVE-2026-6151 | 7.3 HIGH | code-projects Vehicle Showroom Management System PaymentStatusFunction.php sql injection |
| CVE-2026-6152 | 7.3 HIGH | code-projects Vehicle Showroom Management System StaffAddingFunction.php sql injection |
| CVE-2026-6153 | 7.3 HIGH | code-projects Vehicle Showroom Management System StaffDetailsFunction.php sql injection |
| CVE-2026-6161 | 7.3 HIGH | code-projects Simple ChatBox Endpoint insert.php sql injection |
| CVE-2026-6164 | 7.3 HIGH | code-projects Lost and Found Thing Management addcat.php sql injection |
| CVE-2026-6165 | 7.3 HIGH | code-projects Vehicle Showroom Management System Login_check.php sql injection |
| CVE-2026-6166 | 7.3 HIGH | code-projects Vehicle Showroom Management System UpdateVehicleFunction.php sql injection |
| CVE-2026-6167 | 7.3 HIGH | code-projects Faculty Management System subject-print.php sql injection |
| CVE-2026-6182 | 7.3 HIGH | code-projects Simple Content Management System login.php sql injection |
| CVE-2026-6183 | 7.3 HIGH | code-projects Simple Content Management System index.php sql injection |
| CVE-2026-6202 | 6.3 MEDIUM | code-projects Easy Blog Site post.php sql injection |
| CVE-2026-6160 | 5.3 MEDIUM | code-projects Simple ChatBox Endpoint chatbox.sql SimpleChatbox_PHP file information discl |
| CVE-2026-6150 | 4.3 MEDIUM | code-projects Simple Laundry System checkupdatestatus.php cross site scripting |
| CVE-2026-6184 | 2.4 LOW | code-projects Simple Content Management System welcome.php cross site scripting |
No comments yet