CVE-2017-9543: Echatserver Easy Chat Server

High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.

register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1 allows remote attackers to reset arbitrary passwords via a crafted POST request to registresult.htm.

Affected products

  • Echatserver Easy Chat Server: from 2.0, up to and including 3.1

Published 2017-06-12. Last modified 2026-06-17.