{"id":"CVE-2026-100752","published":"2026-09-28T19:16:46.060","lastModified":"2026-09-29T21:39:02.570","description":"Joomla Extension - ordasoft.com - Unauthenticated SQL Injection in Real Estate Manager (Free) < 6.7.9 - site/realestatemanager.php builds the ORDER BY clause of three separate frontend property-listing queries (category browsing, search results, and the full property listing) from a request-controlled order_field parameter, concatenated directly into an unquoted SQL clause with no allow-list of real column names and no cast.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":["CWE-89"],"vendors":[],"products":[],"references":[{"url":"https://www.ordasoft.com/","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}