Vulnerabilities (CVE)

Filtered by vendor Free Realty Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-3166 1 Free Realty 1 Free Realty 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in propview.php in Free Realty 2.9-0.6 and earlier allows remote attackers to execute arbitrary web script or HTML via the sort parameter.
CVE-2006-3165 1 Free Realty 1 Free Realty 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in propview.php in Free Realty 2.9-0.7 and earlier allows remote attackers to execute arbitrary SQL commands via the sort parameter.
CVE-2006-3167 1 Free Realty 1 Free Realty 2024-02-04 5.0 MEDIUM N/A
Free Realty before 2.9 allows remote attackers to obtain the full path and other sensitive information via unspecified manipulations that produce an error message.