First published: Thu Dec 01 2022(Updated: )
A vulnerability has been found in Movie Ticket Booking System and classified as problematic. Affected by this vulnerability is an unknown functionality of the file booking.php. The manipulation of the argument id leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-214627.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Movie Ticket Booking System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-4250 is classified as a problematic vulnerability due to the potential for cross site scripting attacks.
To fix CVE-2022-4250, ensure proper input validation and sanitization in the booking.php file to prevent manipulation of the 'id' argument.
CVE-2022-4250 affects users of the Movie Ticket Booking System that utilize the vulnerable booking.php script.
CVE-2022-4250 can facilitate remote cross site scripting attacks, allowing attackers to execute arbitrary scripts in the context of users' browsers.
Yes, CVE-2022-4250 can be exploited remotely by manipulating the 'id' argument in the booking.php file.