Description
A vulnerability was detected in SourceCodester Train Station Ticketing System 1.0. This affects an unknown part of the file /ajax.php?action=save_station. Performing manipulation of the argument id/station results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used.
Problem types
Product status
Timeline
| 2025-11-18: | Advisory disclosed |
| 2025-11-18: | VulDB entry created |
| 2025-11-18: | VulDB entry last update |
Credits
Yuki77 (VulDB User)
References
vuldb.com/?id.332764 (VDB-332764 | SourceCodester Train Station Ticketing System ajax.php sql injection)
vuldb.com/?ctiid.332764 (VDB-332764 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.691944 (Submit #691944 | SourceCodester Train Station Ticketing System V1.0 SQL Injection)
github.com/puppytgyh/-CVE/issues/16
www.sourcecodester.com/