Show filters
13 Total Results
Displaying 1-10 of 13
Sort by:
Attacker Value
Unknown

CVE-2019-20336

Disclosure Date: January 05, 2020 (last updated February 21, 2025)
In PHP Scripts Mall advanced-real-estate-script 4.0.9, the search-results.php searchtext parameter is vulnerable to XSS.
Attacker Value
Unknown

CVE-2019-20337

Disclosure Date: April 19, 2019 (last updated February 21, 2025)
In PHP Scripts Mall advanced-real-estate-script 4.0.9, the news_edit.php news_id parameter is vulnerable to SQL Injection.
Attacker Value
Unknown

CVE-2018-15187

Disclosure Date: August 10, 2018 (last updated November 27, 2024)
PHP Scripts Mall advanced-real-estate-script 4.0.9 has CSRF via edit-profile.php.
0
Attacker Value
Unknown

CVE-2018-15189

Disclosure Date: August 10, 2018 (last updated November 27, 2024)
PHP Scripts Mall advanced-real-estate-script has XSS via the Name field of a profile.
0
Attacker Value
Unknown

CVE-2018-15188

Disclosure Date: August 10, 2018 (last updated November 27, 2024)
PHP Scripts Mall advanced-real-estate-script 4.0.9 allows remote attackers to cause a denial of service (page structure loss) via crafted JavaScript code in the Name field of a profile.
0
Attacker Value
Unknown

CVE-2018-5075

Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Online Ticket Booking has XSS via the admin/snacks_edit.php snacks_name parameter.
0
Attacker Value
Unknown

CVE-2018-5073

Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Online Ticket Booking has CSRF via admin/movieedit.php.
0
Attacker Value
Unknown

CVE-2018-5076

Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Online Ticket Booking has XSS via the admin/newsedit.php newstitle parameter.
0
Attacker Value
Unknown

CVE-2018-5072

Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Online Ticket Booking has XSS via the admin/sitesettings.php keyword parameter.
0
Attacker Value
Unknown

CVE-2018-5078

Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Online Ticket Booking has XSS via the admin/eventlist.php cast parameter.
0