CVE-2013-1748: Chatelao PHP Address Book
High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.
Multiple SQL injection vulnerabilities in PHP Address Book 8.2.5 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) edit.php or (2) import.php. NOTE: the view.php id vector is already covered by CVE-2008-2565.1 and the edit.php id vector is already covered by CVE-2008-2565.2.
Affected products
- Chatelao PHP Address Book: version 8.2.5 only
Published 2013-04-18. Last modified 2026-06-16.