Vulnerability Details CVE-2012-6586
Multiple SQL injection vulnerabilities in MYRE Vacation Rental Software allow remote attackers to execute arbitrary SQL commands via the (1) garage1 or (2) bathrooms1 parameter to vacation/1_mobile/search.php, or (3) unspecified input to vacation/widgate/request_more_information.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 61.1%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2012-6586
-
cpe:2.3:a:myrephp:myre_vacation_rental:-