A vulnerability classified as critical has been found in Inoutscripts Inout EasyRooms Ultimate Edition 1.0. Affected by this vulnerability is an unknown functionality of the file search/searchdetailed of the component POST Request Handler. This manipulation of the argument property1 causes sql injection.
This vulnerability appears as CVE-2019-25528. The attack may be initiated remotely. In addition, an exploit is available.