Phpdirsubmit is a web-based directory submission application built on PHP whose vulnerability profile centers on SQL injection within its core product. The recurring signal reflects input-handling weaknesses characteristic of server-side web applications that accept and process directory submissions. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpdirsubmit over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-1787HIGH Multiple SQL injection vulnerabilities in PHP Dir Submit (aka WebsiteSubmitter and Submitter Script) allow remote attackers to bypass authentication and gain administrative access | May 26, 2009 | 7.5 | 28 | NO | YES |
CVE-2009-3970MEDIUM SQL injection vulnerability in index.php in PHP Dir Submit (aka WebsiteSubmitter or Submitter Script) allows remote authenticated users to execute arbitrary SQL commands via the ai | Nov 18, 2009 | 6.5 | 25 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpdirsubmit.
Media articles that mention a CVE ID that affects a product developed by Phpdirsubmit — matched by CVE ID, not by vendor name.