PHP Realtor “v_cat” SQL Injection Vulnerability SECUNIA ADVISORY ID: SA32149 VERIFY ADVISORY: http://secunia.com/advisories/32149/ CRITICAL: Moderately critical IMPACT: Manipulation of data, Exposure of sensitive information WHERE: > From remote SOFTWARE: PHP Realtor 1.x http://secunia.com/advisories/product/20076/ DESCRIPTION: Mr.SQL has discovered a vulnerability in PHP Realtor, which can be exploited by malicious people to conduct SQL injection attacks. Input passed to the “v_cat”









Leave a Reply