EIP-2026-100085
PRE-CVE20/20 Real Estate 3.2 - 'listings.asp' SQL Injection
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-100085. PoCs published by Aria-Security Team.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in 20/20 Real Estate software, specifically in the 'listings.asp' page where the 'itemID' parameter is not properly sanitized. The vulnerability allows attackers to manipulate SQL queries, potentially leading to unauthorized data access or manipulation.
Description
20/20 Real Estate 3.2 - 'listings.asp' SQL Injection
Exploits (1)
The provided text describes an SQL injection vulnerability in 20/20 Real Estate software, specifically in the 'listings.asp' page where the 'itemID' parameter is not properly sanitized. The vulnerability allows attackers to manipulate SQL queries, potentially leading to unauthorized data access or manipulation.