First published: Thu Dec 01 2022(Updated: )
A vulnerability, which was classified as critical, has been found in Movie Ticket Booking System. This issue affects some unknown processing of the file editBooking.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-214625 was assigned to this vulnerability.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Movie Ticket Booking System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-4248 is a critical vulnerability found in the Movie Ticket Booking System that allows remote SQL injection attacks through the editBooking.php file.
CVE-2022-4248 has a severity score of 9.8, classified as critical.
The vulnerability affects the Movie Ticket Booking System Project's Movie Ticket Booking System.
A remote SQL injection attack can be initiated through the manipulation of the 'id' argument in the editBooking.php file.
Yes, you can find references related to CVE-2022-4248 at the following links: [GitHub](https://github.com/aman05382/movie_ticket_booking_system_php/issues/3) and [VulDB](https://vuldb.com/?id.214625).