A cross-site request forgery (CSRF) vulnerability in the pjActionUpdate function of PHPJabbers Cinema Booking System v2.0 allows remote attackers to escalate privileges by tricking an authenticated admin into submitting an unauthorized request.
References
| Link | Resource |
|---|---|
| https://github.com/ahrixia/CVE-2024-57429 | Exploit Third Party Advisory |
| https://www.phpjabbers.com/cinema-booking-system/ | Product |
Configurations
History
No history.
Information
Published : 2025-02-06 17:15
Updated : 2025-06-24 00:13
NVD link : CVE-2024-57429
Mitre link : CVE-2024-57429
CVE.ORG link : CVE-2024-57429
JSON object : View
Products Affected
phpjabbers
- cinema_booking_system
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
