mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-05 14:58:06 +02:00
759 B
759 B
CVE-2009-3497
Description
SQL injection vulnerability in view_listing.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attackers to execute arbitrary SQL commands via the id parameter.
POC
Reference
- http://www.packetstormsecurity.org/0909-exploits/realestaterealtors-sql.txt
- http://www.packetstormsecurity.org/0909-exploits/realestaterealtors-sql.txt
Github
No PoCs found on GitHub currently.