CVE-2015-20115 | Next Click Ventures RealtyScript 4.0.2 POST Parameter admin/tools.php cross site scripting (Exploit 38496 / CNNVD-202603-3046)
A vulnerability marked as problematic has been reported in Next Click Ventures RealtyScript 4.0.2. The affected element is an unknown function of the file admin/tools.php of the component POST Parameter Handler. Performing a manipulation results in cross site scripting.
This vulnerability is cataloged as CVE-2015-20115. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.