The Single Theater Booking Script Project maintains a niche web-based booking application for theater operations, with its vulnerability footprint centered on the script's application-layer handling of user input and state management. The recurring weakness classes—cross-site scripting, SQL injection, and cross-site request forgery—reflect common risks in web forms and authentication workflows where untrusted data flows into page generation and database queries without proper neutralization. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Single Theater Booking Script Project over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-17634CRITICAL Single Theater Booking Script 3.2.1 has SQL Injection via the findcity.php q parameter. | Dec 13, 2017 | 9.8 | 41 | NO | YES |
CVE-2017-17939HIGH PHP Scripts Mall Single Theater Booking has CSRF via admin/sitesettings.php. | Dec 28, 2017 | 8.8 | 26 | NO | NO |
CVE-2017-17941HIGH PHP Scripts Mall Single Theater Booking has SQL Injection via the admin/movieview.php movieid parameter. | Dec 28, 2017 | 7.2 | 23 | NO | NO |
CVE-2017-17940MEDIUM PHP Scripts Mall Single Theater Booking has XSS via the title parameter to admin/sitesettings.php. | Dec 28, 2017 | 4.8 | 18 | NO | NO |
CVE-2017-17938MEDIUM PHP Scripts Mall Single Theater Booking has XSS via the admin/viewtheatre.php theatreid parameter. | Dec 28, 2017 | 4.8 | 18 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Single Theater Booking Script Project.
Media articles that mention a CVE ID that affects a product developed by Single Theater Booking Script Project — matched by CVE ID, not by vendor name.