Vulnerabilities > Netartmedia > Real Estate Portal > Medium

DATE CVE VULNERABILITY TITLE RISK
2010-09-24 CVE-2010-3607 Cross-Site Scripting vulnerability in Netartmedia Real Estate Portal 2.0
Cross-site scripting (XSS) vulnerability in AGENTS/index.php in NetArt MEDIA Real Estate Portal 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the id parameter.
4.3
2010-09-24 CVE-2010-3606 Path Traversal vulnerability in Netartmedia Real Estate Portal 2.0
Multiple directory traversal vulnerabilities in AGENTS/index.php in NetArt MEDIA Real Estate Portal 2.0 allow remote emote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) folder and (2) action parameters.
6.8