Phpaddedit is a narrowly scoped PHP application focused on directory editing and management functionality. Its observed vulnerability patterns center on authentication bypass and path-traversal flaws that reflect the access-control and input-validation demands of file-system manipulation, with live severity and exploitation counts shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpaddedit over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-6581HIGH login.php in PhpAddEdit 1.3 allows remote attackers to bypass authentication and gain administrative access by setting the addedit cookie parameter. | Apr 2, 2009 | 7.5 | 29 | NO | YES |
CVE-2008-6313MEDIUM Directory traversal vulnerability in addedit-render.php in phpAddEdit 1.3, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files v | Feb 27, 2009 | 6.8 | 27 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpaddedit.
Media articles that mention a CVE ID that affects a product developed by Phpaddedit — matched by CVE ID, not by vendor name.