PoC Index

CVE-2005-4018

HIGH 7.5EPSS 1.1%

SQL injection vulnerability in ls.php in Landshop Real Estate Commerce System 0.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) start, (2) search_order, (3) search_type, (4) search_area, and (5) keyword parameters.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
1.12% chance of exploitation in the next 30 days, 64th percentile
Published
2005-12-05
Updated
2024-08-07

ExploitDB entries (1)

References

Related