Security Advisory
CVE-2021-44866
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
An issue was discovered in Online-Movie-Ticket-Booking-System 1.0. The file about.php does not perform input validation on the 'id' paramter. An attacker can append SQL queries to the input to extract sensitive information from the database.