VYPR
High severity8.2NVD Advisory· Published Mar 12, 2026· Updated Jun 17, 2026

CVE-2019-25542

CVE-2019-25542

Description

Netartmedia Real Estate Portal 5.0 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the user_email parameter. Attackers can send POST requests to index.php with malicious payloads in the user_email field to bypass authentication, extract sensitive data, or modify database contents.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Netartmedia/Real Estate Portalcpe-rescue3 versions
    5.0+ 2 more
    • (no CPE)range: 5.0
    • (no CPE)range: =5.0
    • cpe:2.3:a:netartmedia:real_estate_portal:5.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.