SQL Injection Vulnerability in Netartmedia Real Estate Portal 5.0
CVE-2019-25542
What is CVE-2019-25542?
The Netartmedia Real Estate Portal 5.0 contains a SQL injection vulnerability that exposes the application to significant risks. By exploiting this flaw, attackers can send specially crafted POST requests to index.php, utilizing the user_email parameter to inject malicious SQL queries. This enables unauthorized users to manipulate database queries, potentially bypassing authentication mechanisms, extracting sensitive information, or making unauthorized modifications to the database. Prompt action is essential to secure affected installations and protect user data from exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Netartmedia Real Estate Portal 5.0
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
