First published: Thu Dec 01 2022(Updated: )
A vulnerability, which was classified as problematic, was found in Movie Ticket Booking System. Affected is an unknown function of the component POST Request Handler. The manipulation of the argument ORDER_ID leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-214626 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Movie Ticket Booking System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-4249.
The POST Request Handler component is affected by this vulnerability.
The severity of CVE-2022-4249 is medium.
This vulnerability can be exploited remotely by manipulating the ORDER_ID argument in the Movie Ticket Booking System.
No specific fix is mentioned for CVE-2022-4249, but it is recommended to update the affected Movie Ticket Booking System software to the latest version.