Phpmyrealty is a real-estate management application with a narrow product portfolio whose vulnerability surface centers on SQL injection flaws in database interaction layers. The recurring weakness reflects common input-handling risks in web applications that process user-supplied property search and listing parameters without adequate parameterization. Current vulnerability counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpmyrealty over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-3861HIGH Multiple SQL injection vulnerabilities in phpMyRealty (PMR) 1.0.9 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in pages.php and (2) | Aug 29, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-3445HIGH SQL injection vulnerability in index.php in phpMyRealty (PMR) 2.0.0 allows remote attackers to execute arbitrary SQL commands via the location parameter. | Aug 4, 2008 | 7.5 | 28 | NO | YES |
CVE-2007-6472HIGH Multiple SQL injection vulnerabilities in phpMyRealty (PMR) 1.0.9 allow (1) remote attackers to execute arbitrary SQL commands via the type parameter to search.php and (2) remote a | Dec 20, 2007 | 7.5 | 28 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpmyrealty.
Media articles that mention a CVE ID that affects a product developed by Phpmyrealty — matched by CVE ID, not by vendor name.