CVE-2009-3497 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in view_listing.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attackers to execute arbitrary SQL commands via the id parameter.
Reference
http://secunia.com/advisories/36812 http://www.packetstormsecurity.org/0909-exploits/realestaterealtors-sql.txt
Share on: