Summary
MYRE Real Estate Software is prone to an SQL-injection and multiple cross-site scripting vulnerabilities.
Exploiting these issues could allow an attacker to steal cookie- based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.
References
Updated on 2017-03-28
Severity
Classification
-
CVSS Base Score: 4.3
AV:N/AC:M/Au:N/C:P/I:N/A:N
Related Vulnerabilities
- Apache Solr Directory Traversal Vulnerability Jan-14
- APC PowerChute Network Shutdown HTTP Response Splitting Vulnerability
- Apache Tomcat NIO Connector Denial of Service Vulnerability
- Apache Struts CookBook/Examples Multiple Cross-Site Scripting Vulnerabilities
- Admidio get_file.php Remote File Disclosure Vulnerability