CVE-2010-4273

DescargarVista ACC IMoveis 1.1 - SQL Injection via id Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-4273. PoCs published by EraGoN.

AI-analyzed exploit summary This is a writeup describing a SQL injection vulnerability in iMoveis 1.1. It provides a dork for finding vulnerable sites and an example exploit URL but lacks actual exploit code or payload.

Description

SQL injection vulnerability in imoveis.php in DescargarVista ACC IMoveis 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by EraGoN · textwebappsphp
https://www.exploit-db.com/exploits/15338

This is a writeup describing a SQL injection vulnerability in iMoveis 1.1. It provides a dork for finding vulnerable sites and an example exploit URL but lacks actual exploit code or payload.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: iMoveis 1.1
No auth needed
Prerequisites: a vulnerable instance of iMoveis 1.1 with exposed imoveis.php
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit, Third Party Advisory x_refsource_misc
http://packetstormsecurity.org/1010-exploits/accimoveis-sql.txt
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/44481
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/15338
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/62843

Scores

EPSS 0.0112
EPSS Percentile 62.2%

Details

CWE
CWE-89
Status published
Products (1)
accimoveis/descargarvista_acc_imoveis 1.1
Published Nov 17, 2010
Tracked Since Feb 18, 2026