


Perceptive Security
SOC/SIEM Consultancy

Netartmedia Real Estate Portal 5.0 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL …
Published:
11 March 2026 at 23:00:00
Alert date:
12 March 2026 at 17:15:30
Source:
nvd.nist.gov
Web Technologies, Database & Storage
CVE-2019-25542 affects Netartmedia Real Estate Portal 5.0, containing a SQL injection vulnerability in the user_email parameter. Unauthenticated attackers can manipulate database queries by injecting SQL code through POST requests to index.php. The vulnerability allows attackers to bypass authentication, extract sensitive data, or modify database contents. The flaw is exploitable without authentication, making it particularly dangerous. Multiple exploit resources are available including Exploit-DB and VulnCheck advisories.
Technical details
Mitigation steps:
Affected products:
Netartmedia Real Estate Portal
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2019-25542
https://www.exploit-db.com/exploits/46563
https://www.vulncheck.com/advisories/netartmedia-real-estate-portal-sql-injection-via-index-php
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
