Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-4600. PoCs published by AnTi SeCuRe.
AI-analyzed exploit summary This is a writeup describing an authentication bypass and SQL injection vulnerability in Real Estate Portal X.0. It provides a demo URL and credentials to exploit the vulnerability but does not include functional exploit code.
Description
SQL injection vulnerability in realestate20/loginaction.php in NetArt Media Real Estate Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the Email parameter (aka the username field). NOTE: some of these details are obtained from third party information.
Exploits (1)
This is a writeup describing an authentication bypass and SQL injection vulnerability in Real Estate Portal X.0. It provides a demo URL and credentials to exploit the vulnerability but does not include functional exploit code.