Phpmember develops a web-based membership management application with a narrowly scoped product portfolio centered on the Webmember platform. The observed vulnerability pattern centers on SQL injection in input handling, a signature weakness class for web applications processing user-supplied database queries.
The number and severity of CVEs published that impact products developed by Phpmember over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-4667MEDIUM SQL injection vulnerability in form.php in WebMember 1.0 allows remote authenticated users to execute arbitrary SQL commands via the formID parameter. | Mar 5, 2010 | 6.5 | 25 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpmember.
Media articles that mention a CVE ID that affects a product developed by Phpmember — matched by CVE ID, not by vendor name.