SQL injection vulnerability in propertysdetails.asp in Dynamic Dataworx NuRealestate (NuRems) 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the PropID parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.021
EPSS Ranking 84.1%