CVE-2018-25221Disclosure(echatserver / easy_chat_server)

LOWCVSS 9.3 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

EChat Server 3.1 contains a buffer overflow vulnerability in the chat.ghp endpoint that allows remote attackers to execute arbitrary code by supplying an oversized username parameter. Attackers can send a GET request to chat.ghp with a malicious username value containing shellcode and ROP gadgets to achieve code execution in the application context.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • easy_chat_server

Threat summary

  • Public PoC is present in monitored signal
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 3 mentions (2026-03-28); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Products
easy_chat_server

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-03-28: 3Mentions · 2026-03-29: 1PoC Mentioned / Linked · 2026-03-28: 1Technical Details · 2026-03-28: 303-2803-29
Signal classification1 categories
Disclosure
4100.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-283
Disclosure3
2026-03-291
Disclosure1
Full discourse4 posts
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2018-25221 📊 Severity: 9.8 🚨 Risk Level: Critical 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2018-25221 #CVE-2018-25221 #CVE #Critical #CyberSecurity #InfoSec https://t.co/NpQy5IVXm9

    Post summary

    The tweet publishes a basic alert for CVE‑2018‑25221, noting its 9.8 severity, critical risk level, and a reference to the NVD entry, but provides no detailed technical or mitigation information.

    0000025
    123 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2018-25221 EChat Server 3.1 contains a buffer overflow vulnerability in the chat.ghp endpoint that allows remote attackers to execute arbitrary code by supplying an oversized us… https://www.cve.org/CVERecord?id=CVE-2018-25221

    Post summary

    CVE-2018-25221 is disclosed as a buffer overflow in EChat Server 3.1 enabling remote code execution via an oversized input to the chat.ghp endpoint, with no PoC, exploit, or patch details provided.

    0000042
    56.9K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2018-25221: CRITICAL] Critical vulnerability alert! EChat Server 3.1 has a buffer overflow flaw in chat.ghp endpoint. Attackers can execute code remotely via oversized username parameter. #CyberSecurity#cve,CVE-2018-25221,#cybersecurity https://cvefind.com/CVE-2018-25221

    Post summary

    The text announces a critical buffer overflow in EChat Server 3.1 that allows remote code execution via an oversized username, but it offers no PoC, exploit code, patch, or evidence of active exploitation.

    0000023
    617 followersView on X
  • 0day Signal@0dayPublishing
    Disclosure

    🚨 CVE-2018-25221: EChat Server 3.1 Buffer Overflow... GET request to chat.ghp with oversized username = instant RCE via stack smashing - classic textbook buffer overflow wit... https://zerodaysignal.com/vulnerability/CVE-2018-25221 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    The tweet announces CVE-2018-25221, a buffer overflow in EChat Server 3.1 that permits remote code execution via an oversized username in a GET request. No patch, exploit code, or evidence of active exploitation is provided, and the post focuses on the vulnerability’s disclosure.

    0000046
    194 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appechatservereasy_chat_server---

Explore more