Lucene search

K

Movie Ticket Booking System Security Vulnerabilities

cve
cve

CVE-2023-44163

The 'search' parameter of the process_search.php resource does not validate the characters received and they are sent unfiltered to the...

9.8CVSS

9.3AI Score

0.001EPSS

2023-09-28 10:15 PM
31
cve
cve

CVE-2023-44164

The 'Email' parameter of the process_login.php resource does not validate the characters received and they are sent unfiltered to the...

9.8CVSS

9.3AI Score

0.001EPSS

2023-09-28 10:15 PM
26
cve
cve

CVE-2023-44166

The 'age' parameter of the process_registration.php resource does not validate the characters received and they are sent unfiltered to the...

9.8CVSS

9.3AI Score

0.001EPSS

2023-09-28 10:15 PM
28
cve
cve

CVE-2023-44174

Online Movie Ticket Booking System v1.0 is vulnerable to an authenticated Stored Cross-Site Scripting...

6.4CVSS

5.2AI Score

0.0004EPSS

2023-09-28 10:15 PM
23
cve
cve

CVE-2023-44173

Online Movie Ticket Booking System v1.0 is vulnerable to an authenticated Reflected Cross-Site Scripting...

5.4CVSS

5.3AI Score

0.0004EPSS

2023-09-28 09:15 PM
20
cve
cve

CVE-2022-4247

A vulnerability classified as critical was found in Movie Ticket Booking System. This vulnerability affects unknown code of the file booking.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may...

9.8CVSS

9.8AI Score

0.002EPSS

2022-12-01 08:15 AM
24
6
cve
cve

CVE-2022-4251

A vulnerability was found in Movie Ticket Booking System and classified as problematic. Affected by this issue is some unknown functionality of the file editBooking.php. The manipulation leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the...

5.4CVSS

5.2AI Score

0.001EPSS

2022-12-01 08:15 AM
25
2
cve
cve

CVE-2022-4248

A vulnerability, which was classified as critical, has been found in Movie Ticket Booking System. This issue affects some unknown processing of the file editBooking.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed....

9.8CVSS

9.7AI Score

0.002EPSS

2022-12-01 08:15 AM
24
4
cve
cve

CVE-2022-4249

A vulnerability, which was classified as problematic, was found in Movie Ticket Booking System. Affected is an unknown function of the component POST Request Handler. The manipulation of the argument ORDER_ID leads to cross site scripting. It is possible to launch the attack remotely. The exploit.....

6.1CVSS

6AI Score

0.001EPSS

2022-12-01 08:15 AM
22
cve
cve

CVE-2022-4250

A vulnerability has been found in Movie Ticket Booking System and classified as problematic. Affected by this vulnerability is an unknown functionality of the file booking.php. The manipulation of the argument id leads to cross site scripting. The attack can be launched remotely. The exploit has...

6.1CVSS

6AI Score

0.001EPSS

2022-12-01 08:15 AM
26
2
cve
cve

CVE-2021-44866

An issue was discovered in Online-Movie-Ticket-Booking-System 1.0. The file about.php does not perform input validation on the 'id' paramter. An attacker can append SQL queries to the input to extract sensitive information from the...

7.5CVSS

7.5AI Score

0.002EPSS

2022-02-03 02:15 PM
19