Multiple SQL injection vulnerabilities in EasyWebRealEstate allow remote attackers to execute arbitrary SQL commands via the (1) lstid parameter to listings.php or (2) infoid parameter to index.php.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2012-10-04T16:00:00

Updated: 2017-08-28T12:57:01

Reserved: 2012-10-04T00:00:00


Link: CVE-2012-5290

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2012-10-04T16:55:00.900

Modified: 2017-08-29T01:32:37.290


Link: CVE-2012-5290

JSON object: View

cve-icon Redhat Information

No data.

CWE