CVE-2012-5290
04.10.2012, 16:55
Multiple SQL injection vulnerabilities in EasyWebRealEstate allow remote attackers to execute arbitrary SQL commands via the (1) lstid parameter to listings.php or (2) infoid parameter to index.php.
Vendor | Product | Version |
---|---|---|
wcs4web | easywebrealestate | - |
𝑥
= Vulnerable software versions