CVE-2012-6584

Myrephp Myre Realty Manager - SQL Injection

Title source: rule
STIX 2.1

Description

Multiple SQL injection vulnerabilities in MYRE Realty Manager allow remote attackers to execute arbitrary SQL commands via the bathrooms1 parameter to (1) demo2/search.php or (2) search.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by d3b4g · textwebappsphp
https://www.exploit-db.com/exploits/22713

References (1)

Core 1
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/22713/

Scores

EPSS 0.0045
EPSS Percentile 63.6%

Details

CWE
CWE-89
Status published
Products (1)
myrephp/myre_realty_manager
Published Aug 25, 2013
Tracked Since Feb 18, 2026