CVE-2017-17603 | Advanced Real Estate Script 4.0.7 search-results.php Parameter sql injection (ID 145345 / EDB-43304)
A vulnerability was found in Advanced Real Estate Script 4.0.7. It has been declared as critical. This vulnerability affects unknown code of the file search-results.php. The manipulation of the argument Projectmain/proj_type/searchtext/sell_price/maxprice parameter as part of Parameter leads to sql injection.
This vulnerability was named CVE-2017-17603. The attack can be initiated remotely. Furthermore, there is an exploit available.