CVE Database
/

CVE-2010-1654

Back to search

CVE-2010-1654

Published: Apr 30, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple SQL injection vulnerabilities in system_member_login.php in Infocus Real Estate Enterprise Edition allow remote attackers to execute arbitrary SQL commands via the (1) username (aka login) and (2) password parameters. NOTE: some of these details are obtained from third party information.

VendorProductVersions

n/a

n/a

affected
n/a

References

39625
third-party-advisory
x_refsource_SECUNIA
ADV-2010-1014
vdb-entry
x_refsource_VUPEN
12415
exploit
x_refsource_EXPLOIT-DB
39731
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now