Back

CVE-2005-1869

PHP remote file inclusion vulnerability in start_lobby.php in MWChat 6.x allows remote attackers to execute arbitrary PHP code via the CONFIG[MWCHAT_Libs] parameter.

Published: Jun 7, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
appindex mwchat *

GitHub Security Advisory GHSA-mh6g-pf49-hqgg

PHP remote file inclusion vulnerability in start_lobby.php in MWChat 6.x allows remote attackers...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.88%

Top 22% most likely to be exploited

Threat Score 30.6 / 100

Data Sources

NVD EPSS GitHub