The Realty Workstation WordPress plugin prior to 1.0.15 does not sanitise and escape the trans_edit parameter before using it in a SQL statement when an agent edit a transaction, leading to an SQL injection
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
realtyworkstation realty workstation |