Phpstreet operates a focused community and discussion platform product line, with Webboard as its primary offering. The observed vulnerability pattern centers on SQL injection in this web-based application, a recurring input-handling concern for database-driven forum software. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpstreet over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-5955HIGH SQL injection vulnerability in show.php in Wbstreet (aka PHPSTREET Webboard) 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Jan 23, 2009 | 7.5 | 28 | NO | YES |
CVE-2008-5956MEDIUM Wbstreet (aka PHPSTREET Webboard) 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain database credentials | Jan 23, 2009 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpstreet.
Media articles that mention a CVE ID that affects a product developed by Phpstreet — matched by CVE ID, not by vendor name.