Vulnerabilities > Flat Chat

DATE CVE VULNERABILITY TITLE RISK
2007-03-10 CVE-2007-1394 Remote PHP Code Execution vulnerability in Flat Chat Flat Chat 2.0
Direct static code injection vulnerability in startsession.php in Flat Chat 2.0 allows remote attackers to execute arbitrary PHP code via the Chat Name field, which is inserted into online.txt and included by users.php.
network
low complexity
flat-chat
critical
10.0