Phpmytourney is a tournament-management application with a narrow product scope, presenting a focused vulnerability surface centered on its web-based event-organization functionality. The recurring weakness classes—code injection and improper input validation—reflect the application's exposure to untrusted user input across tournament creation, participant registration, and result-management workflows. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpmytourney over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-4757HIGH PHP remote file inclusion vulnerability in menu.php in phpMytourney allows remote attackers to execute arbitrary PHP code via a URL in the functions_file parameter. | Sep 8, 2007 | 7.5 | 64 | NO | YES |
CVE-2008-1128MEDIUM PHP remote file inclusion vulnerability in tourney/index.php in phpMyTourney 2 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. | Mar 3, 2008 | 6.8 | 26 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpmytourney.
Media articles that mention a CVE ID that affects a product developed by Phpmytourney — matched by CVE ID, not by vendor name.