Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-61894
HistoryJun 17, 2022 - 12:00 a.m.

Sourcecoester Theme Park Ticketing System SQL注入漏洞

2022-06-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
13

0.001 Low

EPSS

Percentile

37.7%

Sourcecoester Theme Park Ticketing System is an application. A simple PHP/MySQLi project that helps manage and generate tickets for theme park or amusement park visitors. sourcecoester Theme Park Ticketing System v1.0 is vulnerable to a SQL injection vulnerability, which stems from a missing validation of external input SQL statements in the id parameter of edit_ticket.php. in edit_ticket.php. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

0.001 Low

EPSS

Percentile

37.7%

Related for CNVD-2022-61894