CVE-2011-3393

MYRE Real Estate Software - XSS

Title source: llm
STIX 2.1

Description

Multiple cross-site scripting (XSS) vulnerabilities in findagent.php in MYRE Real Estate Software allow remote attackers to inject arbitrary web script or HTML via the (1) country1, (2) state1, or (3) city1 parameter.

Exploits (1)

exploitdb WRITEUP
webappsphp
https://www.exploit-db.com/exploits/17811

References (2)

Core 2
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/8376

Scores

EPSS 0.0084
EPSS Percentile 74.8%

Details

CWE
CWE-79
Status published
Products (1)
myrephp/myre_real_estate_software
Published Sep 15, 2011
Tracked Since Feb 18, 2026