advanced real estate script project
Web & CMS Pluginscommercial
Top products
Latest CVEs
The 13 most recently published vulnerabilities affecting advanced real estate script project.
- CVE-2019-20336In PHP Scripts Mall advanced-real-estate-script 4.0.9, the search-results.php searchtext parameter is vulnerable to XSS.6.1
- CVE-2019-20337In PHP Scripts Mall advanced-real-estate-script 4.0.9, the news_edit.php news_id parameter is vulnerable to SQL Injection.7.2
- CVE-2018-15189PHP Scripts Mall advanced-real-estate-script has XSS via the Name field of a profile.5.4
- CVE-2018-15188PHP Scripts Mall advanced-real-estate-script 4.0.9 allows remote attackers to cause a denial of service (page structure loss) via crafted JavaScript code in the Name field of a profile.6.5
- CVE-2018-15187PHP Scripts Mall advanced-real-estate-script 4.0.9 has CSRF via edit-profile.php.8.0
- CVE-2018-5078Online Ticket Booking has XSS via the admin/eventlist.php cast parameter.4.8
- CVE-2018-5077Online Ticket Booking has XSS via the admin/movieedit.php moviename parameter.4.8
- CVE-2018-5076Online Ticket Booking has XSS via the admin/newsedit.php newstitle parameter.4.8
- CVE-2018-5075Online Ticket Booking has XSS via the admin/snacks_edit.php snacks_name parameter.4.8
- CVE-2018-5074Online Ticket Booking has XSS via the admin/manageownerlist.php contact parameter.4.8
- CVE-2018-5073Online Ticket Booking has CSRF via admin/movieedit.php.6.8
- CVE-2018-5072Online Ticket Booking has XSS via the admin/sitesettings.php keyword parameter.4.8
- CVE-2017-17603Advanced Real Estate Script 4.0.7 has SQL Injection via the search-results.php Projectmain, proj_type, searchtext, sell_price, or maxprice parameter.9.8