CVE-2022-28002 – Movie Seat Reservation System 1.0 File Disclosure / SQL Injection
https://notcve.org/view.php?id=CVE-2022-28002
08 Apr 2022 — Movie Seat Reservation v1 was discovered to contain an unauthenticated file disclosure vulnerability via /index.php?page=home. Se ha detectado que Movie Seat Reservation versión v1, contiene una vulnerabilidad de divulgación de archivos no autenticada por medio de /index.php?page=home Movie Seat Reservation System version 1.0 suffers from file disclosure and remote SQL injection vulnerabilities. • http://packetstormsecurity.com/files/166658/Movie-Seat-Reservation-System-1.0-File-Disclosure-SQL-Injection.html • CWE-552: Files or Directories Accessible to External Parties •
CVE-2022-28001 – Movie Seat Reservation System 1.0 File Disclosure / SQL Injection
https://notcve.org/view.php?id=CVE-2022-28001
08 Apr 2022 — Movie Seat Reservation v1 was discovered to contain a SQL injection vulnerability at /index.php?page=reserve via the id parameter. Se ha detectado que Movie Seat Reservation versión v1, contiene una vulnerabilidad de inyección SQL en /index.php?page=reserve por medio del parámetro id Movie Seat Reservation System version 1.0 suffers from file disclosure and remote SQL injection vulnerabilities. • http://packetstormsecurity.com/files/166658/Movie-Seat-Reservation-System-1.0-File-Disclosure-SQL-Injection.html • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •