CVE-2026-14743: code-projects Real State Services normalHomeSale.php sql injection
A vulnerability was identified in code-projects Real State Services 1.0. The impacted element is an unknown function of the file /normalHomeSale.php. Such manipulation of the argument loc leads to sql injection. The attack may be performed from remote. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-14743?
The severity of CVE-2026-14743 is classified as high with a score of 7.3.
How do I fix CVE-2026-14743?
To fix CVE-2026-14743, sanitize user inputs to prevent SQL injection in the normalHomeSale.php file.
What type of vulnerability is CVE-2026-14743?
CVE-2026-14743 is an SQL Injection vulnerability affecting the code-projects Real State Services.
Can CVE-2026-14743 be exploited remotely?
Yes, CVE-2026-14743 can be exploited remotely by manipulating the argument 'loc'.
What impact does CVE-2026-14743 have on the software?
CVE-2026-14743 allows attackers to execute arbitrary SQL queries, potentially compromising the database.