SQL injection vulnerability in dpage.php in YPN PHP Realty allows remote attackers to execute arbitrary SQL commands via the docID parameter.
- http://packetstorm.linuxsecurity.com/0808-exploits/phprealty-sql.txt
No PoCs found on GitHub currently.