Show filters
68 Total Results
Displaying 61-68 of 68
Sort by:
Attacker Value
Unknown

CVE-2022-31969

Disclosure Date: June 02, 2022 (last updated February 23, 2025)
ChatBot App with Suggestion v1.0 is vulnerable to SQL Injection via /simple_chat_bot/admin/?page=user/manage_user&id=.
Attacker Value
Unknown

CVE-2022-31966

Disclosure Date: June 02, 2022 (last updated October 07, 2023)
ChatBot App with Suggestion v1.0 is vulnerable to Delete any file via /simple_chat_bot/classes/Master.php?f=delete_img.
Attacker Value
Unknown

CVE-2022-30464

Disclosure Date: May 24, 2022 (last updated February 23, 2025)
ChatBot App with Suggestion in PHP/OOP v1.0 is vulnerable to Cross Site Scripting (XSS) via /simple_chat_bot/classes/Master.php?f=save_response.
Attacker Value
Unknown

CVE-2022-30459

Disclosure Date: May 24, 2022 (last updated February 23, 2025)
ChatBot App with Suggestion in PHP/OOP v1.0 is vulnerable to SQL Injection via /simple_chat_bot/classes/Master.php?f=delete_response, id.
Attacker Value
Unknown

CVE-2022-30518

Disclosure Date: May 20, 2022 (last updated February 23, 2025)
ChatBot Application with a Suggestion Feature 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /simple_chat_bot/admin/responses/view_response.php.
Attacker Value
Unknown

CVE-2021-46428

Disclosure Date: January 27, 2022 (last updated February 23, 2025)
A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Simple Chatbot Application 1.0 ( and previous versions via the bot_avatar parameter in SystemSettings.php.
Attacker Value
Unknown

CVE-2021-46427

Disclosure Date: January 27, 2022 (last updated February 23, 2025)
An SQL Injection vulnerability exists in Sourcecodester Simple Chatbot Application 1.0 via the message parameter in Master.php.
Attacker Value
Unknown

CVE-2020-7239

Disclosure Date: January 21, 2020 (last updated February 21, 2025)
The conversation-watson plugin before 0.8.21 for WordPress has a DOM-based XSS vulnerability that is executed when a chat message containing JavaScript is sent.