mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-30 13:19:29 +02:00
759 B
759 B
CVE-2009-3497
Description
SQL injection vulnerability in view_listing.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attackers to execute arbitrary SQL commands via the id parameter.
POC
Reference
- http://www.packetstormsecurity.org/0909-exploits/realestaterealtors-sql.txt
- http://www.packetstormsecurity.org/0909-exploits/realestaterealtors-sql.txt
Github
No PoCs found on GitHub currently.