CVE-2017-17603

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
13/12/2017
Last modified:
20/04/2025

Description

Advanced Real Estate Script 4.0.7 has SQL Injection via the search-results.php Projectmain, proj_type, searchtext, sell_price, or maxprice parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:advanced_real_estate_script_project:advanced_real_estate_script:4.0.7:*:*:*:*:*:*:*