Vulnerabilities > CVE-2006-0418 - Remote Code Injection Weakness in 123 Flash Chat

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
topcmm-computing
exploit available

Summary

Eval injection vulnerability in 123 Flash Chat Server 5.0 and 5.1 allows attackers to execute arbitrary code via a crafted username.

Vulnerable Configurations

Part Description Count
Application
Topcmm_Computing
2

Exploit-Db

description123 Flash Chat 5.0 Remote Code Injection Weakness. CVE-2006-0418. Webapps exploit for php platform
idEDB-ID:27121
last seen2016-02-03
modified2006-01-24
published2006-01-24
reporterJesus Olmos Gonzalez
sourcehttps://www.exploit-db.com/download/27121/
title123 Flash Chat 5.0 - Remote Code Injection Weakness