Vulnerabilities > Wcs4Web

DATE CVE VULNERABILITY TITLE RISK
2012-10-04 CVE-2012-5290 SQL Injection vulnerability in Wcs4Web Easywebrealestate
Multiple SQL injection vulnerabilities in EasyWebRealEstate allow remote attackers to execute arbitrary SQL commands via the (1) lstid parameter to listings.php or (2) infoid parameter to index.php.
network
low complexity
wcs4web CWE-89
7.5