Description
SQL injection vulnerability in content.php in abarcar Realty Portal 5.1.5 allows remote attackers to execute arbitrary SQL commands via the cat parameter.
Affected products
- abarcar / abarcar_realty_portal5.1.5 – 5.1.5
References
- MISChttp://www.security.nnov.ru/Mdocument929.html
- MISChttp://downloads.securityfocus.com/vulnerabilities/exploits/abarcar_sql_poc.txt
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/2194
- MISChttp://www.osvdb.org/26226
- MISChttp://www.securityfocus.com/bid/18218
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/26993
- VENDOR_ADVISORYhttp://secunia.com/advisories/20504