Multiple PHP remote file inclusion vulnerabilities in phpRealty 0.02 allow remote attackers to execute arbitrary PHP code via a URL in the MGR parameter to (1) index.php, (2) p_ins.php, and (3) u_ins.php in manager/admin/.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.5
EPSS Ranking 97.7%