Executive brief
Easy Chat Server, a communication platform, contains a security flaw in its user registration process. An unauthorized attacker can exploit this to write files to unintended locations on the server's hard drive. Depending on the server configuration, this could allow an attacker to steal sensitive information or take full control of the system by executing malicious code.
Technical details
A directory traversal vulnerability exists in Easy Chat Server 3.1 within the user registration component. The application fails to sufficiently sanitize the 'UserName' parameter sent via a POST request to the '/registresult.htm' endpoint. A remote, unauthenticated attacker can provide traversal sequences (e.g., '../../') to escape the intended storage directory. This allows for unauthorized file writes, which can lead to sensitive information disclosure or remote code execution if the attacker can write a malicious file into a web-executable directory. Mitigation involves validating and canonicalizing paths and stripping traversal sequences from user-supplied input.
Affected products
- Easy Chat Server Easy Chat Server 3.1
Timeline
- 2026-05-22: advisory: NVD published the CVE record.