Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2010-3607

Disclosure Date: September 24, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in AGENTS/index.php in NetArt MEDIA Real Estate Portal 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the id parameter.
0
Attacker Value
Unknown

CVE-2010-3606

Disclosure Date: September 24, 2010 (last updated October 04, 2023)
Multiple directory traversal vulnerabilities in AGENTS/index.php in NetArt MEDIA Real Estate Portal 2.0 allow remote emote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) folder and (2) action parameters.
0
Attacker Value
Unknown

CVE-2009-4613

Disclosure Date: January 14, 2010 (last updated October 04, 2023)
SQL injection vulnerability in realestate20/loginaction.php in NetArt Media Real Estate Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the Password parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown

CVE-2009-4600

Disclosure Date: January 12, 2010 (last updated October 04, 2023)
SQL injection vulnerability in realestate20/loginaction.php in NetArt Media Real Estate Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the Email parameter (aka the username field). NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-6042

Disclosure Date: February 03, 2009 (last updated October 04, 2023)
SQL injection vulnerability in the re_search module in NetArtMedia Real Estate Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the ad parameter to index.php.
0
Attacker Value
Unknown

CVE-2008-6009

Disclosure Date: January 30, 2009 (last updated October 04, 2023)
SG Real Estate Portal 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the Auth cookie to 1.
0
Attacker Value
Unknown

CVE-2008-6011

Disclosure Date: January 30, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in SG Real Estate Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the page_id parameter.
0
Attacker Value
Unknown

CVE-2008-6010

Disclosure Date: January 30, 2009 (last updated October 04, 2023)
Multiple directory traversal vulnerabilities in SG Real Estate Portal 2.0 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) mod, (2) page, or (3) lang parameter to index.php; or the (4) action or (5) folder parameter in a security request to admin/index.php.
0