Vulnerabilities > Netartmedia > Real Estate Portal > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2010-09-24 | CVE-2010-3607 | Cross-Site Scripting vulnerability in Netartmedia Real Estate Portal 2.0 Cross-site scripting (XSS) vulnerability in AGENTS/index.php in NetArt MEDIA Real Estate Portal 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the id parameter. | 4.3 |
2010-09-24 | CVE-2010-3606 | Path Traversal vulnerability in Netartmedia Real Estate Portal 2.0 Multiple directory traversal vulnerabilities in AGENTS/index.php in NetArt MEDIA Real Estate Portal 2.0 allow remote emote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) folder and (2) action parameters. | 6.8 |