CVE-2021-44866
Published
CVSS v3
7.5
HIGH
CVSS v2
5
MEDIUM
Affected
1
PROJECT
Description
An issue was discovered in Online-Movie-Ticket-Booking-System 1.0. The file about.php does not perform input validation on the 'id' paramter. An attacker can append SQL queries to the input to extract sensitive information from the database.
Online movie booking system is a web portal where you can book tickets in advance , know your movie show timing, watch movie trailer and read reviews for the same. The objective of Cinema Reservation System is to provide the facility of booking movie tickets online. Customer can view timing of movie shows and book the show as per the availability. Cinema Reservation System is a PHP/MySQL based. This project provides ticket reservation system allowing bookings in a few easy steps. Users can easily book for Shows, Change time, Delete order and view all the shows available. https://youtu.be/h3DR9mBOsfc