CVE-2024-57430

An SQL injection vulnerability in the pjActionGetUser function of PHPJabbers Cinema Booking System v2.0 allows attackers to manipulate database queries via the column parameter. Exploiting this flaw can lead to unauthorized information disclosure, privilege escalation, or database manipulation.
CVSS

No CVSS.

References
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpjabbers:cinema_booking_system:2.0:*:*:*:*:*:*:*

History

24 Jun 2025, 00:12

Type Values Removed Values Added
CPE cpe:2.3:a:phpjabbers:cinema_booking_system:2.0:*:*:*:*:*:*:*
First Time Phpjabbers cinema Booking System
Phpjabbers
References () https://www.phpjabbers.com/cinema-booking-system/ - () https://www.phpjabbers.com/cinema-booking-system/ - Product
References () https://github.com/ahrixia/CVE-2024-57430 - () https://github.com/ahrixia/CVE-2024-57430 - Exploit, Third Party Advisory

06 Feb 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-06 17:15

Updated : 2025-06-24 00:12


NVD link : CVE-2024-57430

Mitre link : CVE-2024-57430


JSON object : View

Products Affected

phpjabbers

  • cinema_booking_system
CWE

No CWE.