Critical severity9.8NVD Advisory· Published Aug 15, 2023· Updated Jun 17, 2026
CVE-2023-39851
CVE-2023-39851
Description
webchess v1.0 was discovered to contain a SQL injection vulnerability via the $playerID parameter at mainmenu.php. NOTE: this is disputed by a third party who indicates that the playerID is a session variable controlled by the server, and thus cannot be used for exploitation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- webchess/webchessdescription
Patches
Vulnerability mechanics
References
2- github.com/KLSEHB/vulnerability-report/blob/main/webchess_CVE-2023-39851nvdExploitThird Party Advisory
- sourceforge.net/projects/webchessnvdProduct
News mentions
0No linked articles in our index yet.