7.5
CVSSv2

CVE-2008-4497

Published: 09/10/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in event_detail.php in Built2Go Real Estate Listings 1.5 allows remote malicious users to execute arbitrary SQL commands via the event_id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

built2go real estate listings 1.5

Exploits

[~]----------------------------------------------------------------------------- [~] Built2Go PHP RealEstate v15 (event_detailphp) - SQL Injection Vulnerability [~] [~] [A professional real estate listings website [~] Lists homes for sale and apartments for rent, [~] and provides a powerful search similar to the professional realtor websites [~ ...