Bus Reservation System 1.1 contains a SQL injection vulnerability in the pickup_id parameter that allows attackers to manipulate database queries. Attackers can exploit boolean-based, error-based, and time-based blind SQL injection techniques to steal information from the database.
Attackers can inject malicious SQL code fragments through the pickup_id parameter in HTTP requests without needing any privileges. The vulnerability enables the use of three techniques: boolean-based blind SQL injection (inferring data based on true/false responses), error-based SQL injection (extracting information from database error messages), and time-based blind SQL injection (inferring data based on server response time). All three techniques allow gradual extraction of database contents despite the lack of direct display of query results.
Attackers can read or modify data stored in the application's database, including potentially personal passenger data, reservations, and authentication credentials. High level of impact on data confidentiality and integrity may lead to data theft or unauthorized modification.
Apply patches available from the vendor according to references. Additionally, it is recommended to implement validation and parameterization of SQL queries on the server side, as well as to restrict access to the application at the firewall level to trusted IP addresses, if possible.
PHPJabbers Bus Reservation System version 1.1
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XPhpjabbers Bus Reservation System
APPPhpjabbers1.1
Related vulnerabilities
A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Bus Reservation System v1.1 allows atta...
PHPJabbers Bus Reservation System v1.1 is vulnerable to CSV Injection vulnerability which allows an attacker t...
PHPJabbers Bus Reservation System v1.1 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "tit...
A vulnerability was found in PHP Jabbers Bus Reservation System 1.1 and classified as problematic. Affected by...
Stored XSS w PHPJabbers Cinema Booking System v2.0