Vulnerability Description
Netartmedia Real Estate Portal 5.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the page parameter. Attackers can submit POST requests to index.php with malicious SQL payloads in the page field to bypass authentication, extract sensitive data, or modify database contents.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netartmedia | Real Estate Portal | 5.0 |
Related Weaknesses (CWE)
References
- https://www.exploit-db.com/exploits/46563ExploitVDB Entry
- https://www.vulncheck.com/advisories/netartmedia-real-estate-portal-sql-injectioThird Party Advisory
FAQ
What is CVE-2019-25543?
CVE-2019-25543 is a vulnerability with a CVSS score of 8.2 (HIGH). Netartmedia Real Estate Portal 5.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the page parameter. Attack...
How severe is CVE-2019-25543?
CVE-2019-25543 has been rated HIGH with a CVSS base score of 8.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-25543?
Check the references section above for vendor advisories and patch information. Affected products include: Netartmedia Real Estate Portal.