Show filters
110 Total Results
Displaying 61-70 of 110
Sort by:
Attacker Value
Unknown

CVE-2018-5074

Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Online Ticket Booking has XSS via the admin/manageownerlist.php contact parameter.
0
Attacker Value
Unknown

CVE-2017-17603

Disclosure Date: December 13, 2017 (last updated November 26, 2024)
Advanced Real Estate Script 4.0.7 has SQL Injection via the search-results.php Projectmain, proj_type, searchtext, sell_price, or maxprice parameter.
0
Attacker Value
Unknown

CVE-2013-5930

Disclosure Date: September 23, 2013 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in search_residential.php in Real Estate PHP Script allows remote attackers to inject arbitrary web script or HTML via the bos parameter.
0
Attacker Value
Unknown

CVE-2013-5931

Disclosure Date: September 23, 2013 (last updated October 05, 2023)
SQL injection vulnerability in property_listings_detail.php in Real Estate PHP Script allows remote attackers to execute arbitrary SQL commands via the listingid parameter.
0
Attacker Value
Unknown

CVE-2012-4258

Disclosure Date: August 13, 2012 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in MYRE Real Estate Software (2012 Q2) allow remote attackers to execute arbitrary SQL commands via the (1) link_idd parameter to 1_mobile/listings.php or (2) userid parameter to 1_mobile/agentprofile.php.
0
Attacker Value
Unknown

CVE-2010-5013

Disclosure Date: November 02, 2011 (last updated October 04, 2023)
SQL injection vulnerability in listing_detail.asp in Mckenzie Creations Virtual Real Estate Manager (VRM) 3.5 allows remote attackers to execute arbitrary SQL commands via the Lid parameter.
0
Attacker Value
Unknown

CVE-2011-3393

Disclosure Date: September 15, 2011 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in findagent.php in MYRE Real Estate Software allow remote attackers to inject arbitrary web script or HTML via the (1) country1, (2) state1, or (3) city1 parameter.
0
Attacker Value
Unknown

CVE-2011-3394

Disclosure Date: September 15, 2011 (last updated October 04, 2023)
SQL injection vulnerability in findagent.php in MYRE Real Estate Software allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown

CVE-2010-4782

Disclosure Date: April 07, 2011 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in list.asp in Softwebs Nepal (aka Ananda Raj Pandey) Ananda Real Estate 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) city, (2) state, (3) country, (4) minprice, (5) maxprice, (6) bed, and (7) bath parameters, different vectors than CVE-2006-6807.
0
Attacker Value
Unknown

CVE-2010-4738

Disclosure Date: February 16, 2011 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Rae Media INC Real Estate Single and Multi Agent System 3.0 allow remote attackers to execute arbitrary SQL commands via the probe parameter to (1) multi/city.asp in the Multi Agent System and (2) resulttype.asp in the Single Agent System.
0