Iexpress develops real-estate and property-management software solutions including Estate Agent Manager, Munch Pro, and Property Pro, addressing a specialized market segment. The observed vulnerability reports involve these products but lack sufficient granularity for a meaningful profile of underlying weakness patterns; current exposure detail and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Iexpress over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-5934HIGH SQL injection vulnerability in admin/default.asp in Estate Agent Manager 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the UserName field. | Nov 16, 2006 | 7.5 | 28 | NO | YES |
CVE-2007-3992HIGH SQL injection vulnerability in vir_login.asp in iExpress Property Pro allows remote attackers to execute arbitrary SQL commands via the Password parameter. NOTE: the Username para | Jul 25, 2007 | 7.5 | 21 | NO | NO |
CVE-2007-3966MEDIUM SQL injection vulnerability in Munch Pro allows remote attackers to execute arbitrary SQL commands via the login field to /admin, a different vulnerability than CVE-2006-5880. | Jul 25, 2007 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Iexpress.
Media articles that mention a CVE ID that affects a product developed by Iexpress — matched by CVE ID, not by vendor name.