PT-2006-3771 · Realty Portal · Realty Portal

Published

2006-06-06

·

Updated

2026-03-13

·

CVE-2006-2853

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Realty Portal version 5.1.5
Description A SQL injection issue exists, allowing remote attackers to execute arbitrary SQL commands. This is achieved by manipulating the cat parameter in the content.php file.
Recommendations For Realty Portal version 5.1.5, consider restricting access to the content.php file or the cat parameter to minimize the risk of exploitation until a patch is available.

Exploit

Fix

Related Identifiers

CVE-2006-2853

Affected Products

Realty Portal