← Back

CVE-2024-57430

nvd nist
Published: Feb 6, 2025Modified: Jun 24, 2025

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

An SQL injection vulnerability in the pjActionGetUser function of PHPJabbers Cinema Booking System v2.0 allows attackers to manipulate database queries via the column parameter. Exploiting this flaw can lead to unauthorized information disclosure, privilege escalation, or database manipulation.

Affected (1)

1 product
Cinema Booking System
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.0

References (2)

Source: cve@mitre.org
ExploitThird Party Advisory

Timeline

No history available yet.