Easy Chat Server 3.1 contains a denial of service vulnerability that allows remote attackers to crash the application by sending oversized data in the message parameter. Attackers can establish a session via the chat.ghp endpoint and then send a POST request to body2.ghp with an excessively large message parameter value to cause the service to crash.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-03-22 14:16
Updated : 2026-03-23 14:31
NVD link : CVE-2019-25613
Mitre link : CVE-2019-25613
CVE.ORG link : CVE-2019-25613
JSON object : View
Products Affected
No product.
CWE
CWE-940
Improper Verification of Source of a Communication Channel
