CVE-2005-4018
Landshop Real Estate Commerce System <= 0.6.3 - SQL Injection via ls.php Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-4018. PoCs published by r0t3d3Vil.
AI-analyzed exploit summary The provided text describes multiple SQL injection vulnerabilities in Landshop, detailing vulnerable parameters in the application's URL structure. It does not include executable exploit code but outlines attack vectors.
Description
SQL injection vulnerability in ls.php in Landshop Real Estate Commerce System 0.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) start, (2) search_order, (3) search_type, (4) search_area, and (5) keyword parameters.
Exploits (1)
The provided text describes multiple SQL injection vulnerabilities in Landshop, detailing vulnerable parameters in the application's URL structure. It does not include executable exploit code but outlines attack vectors.