PHP Address Book is a focused web-based contact management application with a narrow, self-contained product scope. The application's vulnerability surface reflects typical web-application exposure classes centered on server-side input handling and data access patterns. Current exposure counts, exploitation activity, and severity distribution are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Php Address Book over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-2565HIGH Multiple SQL injection vulnerabilities in PHP Address Book 3.1.5 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) view.php and (2) e | Jun 6, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-2566MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in PHP Address Book 3.1.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the group parameter to ( | Jun 6, 2008 | 4.3 | 21 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Php Address Book.
Media articles that mention a CVE ID that affects a product developed by Php Address Book — matched by CVE ID, not by vendor name.