Vulnerabilities (CVE)

Filtered by vendor Netartmedia Subscribe
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-25543 1 Netartmedia 1 Real Estate Portal 2026-03-17 N/A 8.2 HIGH
Netartmedia Real Estate Portal 5.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the page parameter. Attackers can submit POST requests to index.php with malicious SQL payloads in the page field to bypass authentication, extract sensitive data, or modify database contents.
CVE-2020-29364 1 Netartmedia 1 News Lister 2024-11-21 3.5 LOW 4.8 MEDIUM
In NetArt News Lister 1.0.0, the news headlines vulnerable to stored xss attacks. Attackers can inject codes in news titles.