Edreamers maintains a focused portfolio centered on content-management and containerization products such as EdNews and EdContainer, with its observed vulnerability exposure concentrated in classic application-layer input-handling issues. The durable signal centers on path-traversal and SQL-injection weaknesses, reflecting risks inherent to web applications that process user input and database queries; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Edreamers over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-5820HIGH SQL injection vulnerability in eDNews_view.php in eDreamers eDNews 2 allows remote attackers to execute arbitrary SQL commands via the newsid parameter. | Jan 2, 2009 | 7.5 | 28 | NO | YES |
CVE-2008-5819MEDIUM Directory traversal vulnerability in eDNews_archive.php in eDreamers eDNews 2, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local fil | Jan 2, 2009 | 6.8 | 27 | NO | YES |
CVE-2008-5818MEDIUM Directory traversal vulnerability in index.php in eDreamers eDContainer 2.22, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local file | Jan 2, 2009 | 6.8 | 27 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Edreamers.
Media articles that mention a CVE ID that affects a product developed by Edreamers — matched by CVE ID, not by vendor name.