📦 Xbtit

by Btiteam

🔍 What is Xbtit?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2018-15680

CRITICAL CVSS 9.8 Sep 5, 2018

XBTIT 2.5.4 stores user passwords as unsalted MD5 hashes, making them vulnerable to brute-force attacks. Attackers can crack these weak hashes to obtain plaintext passwords, compromising user accounts...

CVE-2021-45821

HIGH CVSS 8.8 Mar 16, 2022

CVE-2021-45821 is a blind SQL injection vulnerability in Xbtit 3.1's chat history functionality that allows authenticated users to extract sensitive database information. Attackers can potentially obt...

CVE-2018-15682

HIGH CVSS 8.8 Sep 5, 2018

CVE-2018-15682 is a Cross-Site Request Forgery (CSRF) vulnerability in BTITeam XBTIT that allows attackers to send private messages to users without their consent. Attackers can create malicious web p...