← Vulnerability feed

Vulnerability record · CVE-2004-2466 · published 31 December 2004

CVE-2004-2466: Easy Chat Server chat.ghp username buffer overflow denial of service

Efs Software · Easy Chat Server

Easy Chat Server 1.2 (and reportedly 2.2) mishandles an overly long username parameter in chat.ghp, causing a server crash that is possibly a buffer overflow. The flaw is remotely reachable without authentication, so an unauthenticated attacker can take the chat service down.

5.0 CVSS 2.0 Medium EPSS 75% · top 0.5% CWE-119 · Memory buffer overflow
5.0CVSS 2.0 base score
75%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
30References, 10 tagged exploit
16 Jun 2026Last modified by NVD

Description

chat.ghp in Easy Chat Server 1.2 allows remote attackers to cause a denial of service (server crash) via a long username parameter, possibly due to a buffer overflow. NOTE: it was later reported that 2.2 is also affected.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 18 September 2026. Confidence: medium.

medium priorityRemote unauthenticated denial of service with public exploit references and very high EPSS, but impact is limited to availability and the record is old with no confirmed code execution.

What it is

Easy Chat Server 1.2 (and reportedly 2.2) mishandles an overly long username parameter in chat.ghp, causing a server crash that is possibly a buffer overflow. The flaw is remotely reachable without authentication, so an unauthenticated attacker can take the chat service down.

Impact

An attacker can crash the chat server, causing a denial of service for all users. The record only describes a crash, so code execution is not confirmed.

Attack surface

Reached over the network via the chat.ghp endpoint by supplying a long username parameter; the CVSS vector AV:N/AC:L/Au:N indicates no authentication and no user interaction are required.

Exploitation

Public exploit and vendor advisory references exist, and EPSS is very high (0.74696, 99.5th percentile), but the CVE is not listed in CISA KEV and no ransomware use is documented.

What to do

  • Patch or upgrade Easy Chat Server to a fixed release; if none is available, retire or isolate the product.
  • Place the chat service behind a reverse proxy or WAF that rejects oversized username parameters.
  • Restrict network access to the chat.ghp endpoint to trusted clients only.
  • Monitor the service for crash/restart loops and treat repeated crashes as an attack indicator.

Detection

  • Inspect HTTP requests to chat.ghp for abnormally long username parameter values.
  • Alert on server crash or restart events correlated with inbound chat.ghp requests.
  • Log and review source IPs sending oversized or malformed parameters to the chat service.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://archives.neohapsis.com/archives/bugtraq/2004-07/0013.html ExploitVendor Advisory
http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0077.html ExploitVendor Advisory
http://packetstormsecurity.com/files/167892/Easy-Chat-Server-3.1-Buffer-Overflow.html
http://secunia.com/advisories/12006 ExploitVendor Advisory
http://secunia.com/advisories/26461 Vendor Advisory
http://secunia.com/advisories/58427
http://www.autistici.org/fdonato/advisory/EasyChatServer1.2-adv.txt ExploitVendor Advisory
http://www.exploit-db.com/exploits/33326
http://www.osvdb.org/7416 Exploit
http://www.securityfocus.com/bid/25328
http://www.securityfocus.com/bid/67384
http://www.vupen.com/english/advisories/2007/2901
https://exchange.xforce.ibmcloud.com/vulnerabilities/16629
https://exchange.xforce.ibmcloud.com/vulnerabilities/36013
https://www.exploit-db.com/exploits/4289
http://archives.neohapsis.com/archives/bugtraq/2004-07/0013.html ExploitVendor Advisory
http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0077.html ExploitVendor Advisory
http://packetstormsecurity.com/files/167892/Easy-Chat-Server-3.1-Buffer-Overflow.html
http://secunia.com/advisories/12006 ExploitVendor Advisory
http://secunia.com/advisories/26461 Vendor Advisory
http://secunia.com/advisories/58427
http://www.autistici.org/fdonato/advisory/EasyChatServer1.2-adv.txt ExploitVendor Advisory
http://www.exploit-db.com/exploits/33326
http://www.osvdb.org/7416 Exploit
http://www.securityfocus.com/bid/25328
http://www.securityfocus.com/bid/67384
http://www.vupen.com/english/advisories/2007/2901
https://exchange.xforce.ibmcloud.com/vulnerabilities/16629
https://exchange.xforce.ibmcloud.com/vulnerabilities/36013
https://www.exploit-db.com/exploits/4289

Track CVE-2004-2466 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2006-6933Efs software easy chat server vulnerabilityEasy Chat Server 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download cert…EPSS 2.2%5.0CVE-2004-2467Efs software easy chat server vulnerabilitychat.ghp in Easy Chat Server 1.2 allows remote attackers to add a large number of fake users, then eventually cause a denial of service (server crash…EPSS 2.8%4.3CVE-2004-2465Efs software easy chat server vulnerabilityCross-site scripting (XSS) vulnerability in chat.ghp in Easy Chat Server 1.2 allows remote attackers to inject arbitrary web script or HTML via the u…EPSS 0.99%8.8CVE-2026-8452Citrix NetScaler ADC and Gateway memory buffer overflow causes DoSCVE-2026-8452 is a memory buffer overflow (CWE-119) in Citrix NetScaler ADC and NetScaler Gateway that leads to unpredictable or erroneous behavior a…KEVEPSS 1.0%analysed8.8CVE-2009-3459Adobe Reader and Acrobat heap buffer overflow via crafted PDFAdobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 contain a heap-based buffer overflow (CWE-122) triggered by a crafted…KEVEPSS 87%analysed9.8CVE-2008-4250Microsoft Windows Server service RPC path canonicalization buffer overflowThe Server service in multiple Windows versions fails to properly handle path canonicalization, allowing a crafted RPC request to overflow a buffer a…KEVEPSS 99%analysed8.8CVE-2025-31277Apple WebKit memory corruption via malicious web contentApple WebKit fails to handle memory correctly when processing crafted web content, leading to memory corruption across Safari, iOS, iPadOS, macOS, tv…KEVEPSS 1.6%analysed8.8CVE-2026-3910Google Chrome V8 improper implementation allows sandbox code executionChrome before 146.0.7680.75 contains an inappropriate implementation in the V8 JavaScript engine, classified as code injection and memory buffer over…KEVEPSS 1.0%analysed

Source: NIST National Vulnerability Database (record CVE-2004-2466), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.