Show filters
110 Total Results
Displaying 61-70 of 110
Sort by:
Attacker Value
Unknown
CVE-2018-5074
Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Online Ticket Booking has XSS via the admin/manageownerlist.php contact parameter.
0
Attacker Value
Unknown
CVE-2017-17603
Disclosure Date: December 13, 2017 (last updated November 26, 2024)
Advanced Real Estate Script 4.0.7 has SQL Injection via the search-results.php Projectmain, proj_type, searchtext, sell_price, or maxprice parameter.
0
Attacker Value
Unknown
CVE-2013-5930
Disclosure Date: September 23, 2013 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in search_residential.php in Real Estate PHP Script allows remote attackers to inject arbitrary web script or HTML via the bos parameter.
0
Attacker Value
Unknown
CVE-2013-5931
Disclosure Date: September 23, 2013 (last updated October 05, 2023)
SQL injection vulnerability in property_listings_detail.php in Real Estate PHP Script allows remote attackers to execute arbitrary SQL commands via the listingid parameter.
0
Attacker Value
Unknown
CVE-2012-4258
Disclosure Date: August 13, 2012 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in MYRE Real Estate Software (2012 Q2) allow remote attackers to execute arbitrary SQL commands via the (1) link_idd parameter to 1_mobile/listings.php or (2) userid parameter to 1_mobile/agentprofile.php.
0
Attacker Value
Unknown
CVE-2010-5013
Disclosure Date: November 02, 2011 (last updated October 04, 2023)
SQL injection vulnerability in listing_detail.asp in Mckenzie Creations Virtual Real Estate Manager (VRM) 3.5 allows remote attackers to execute arbitrary SQL commands via the Lid parameter.
0
Attacker Value
Unknown
CVE-2011-3393
Disclosure Date: September 15, 2011 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in findagent.php in MYRE Real Estate Software allow remote attackers to inject arbitrary web script or HTML via the (1) country1, (2) state1, or (3) city1 parameter.
0
Attacker Value
Unknown
CVE-2011-3394
Disclosure Date: September 15, 2011 (last updated October 04, 2023)
SQL injection vulnerability in findagent.php in MYRE Real Estate Software allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown
CVE-2010-4782
Disclosure Date: April 07, 2011 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in list.asp in Softwebs Nepal (aka Ananda Raj Pandey) Ananda Real Estate 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) city, (2) state, (3) country, (4) minprice, (5) maxprice, (6) bed, and (7) bath parameters, different vectors than CVE-2006-6807.
0
Attacker Value
Unknown
CVE-2010-4738
Disclosure Date: February 16, 2011 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Rae Media INC Real Estate Single and Multi Agent System 3.0 allow remote attackers to execute arbitrary SQL commands via the probe parameter to (1) multi/city.asp in the Multi Agent System and (2) resulttype.asp in the Single Agent System.
0