← Back to CVE List

CVE-2020-29284

Published: 2020-12-02T22:15Z
Last Modified: 2024-11-21T05:23Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The file view-chair-list.php in Multi Restaurant Table Reservation System 1.0 does not perform input validation on the table_id parameter which allows unauthenticated SQL Injection. An attacker can send malicious input in the GET request to /dashboard/view-chair-list.php?table_id= to trigger the vulnerability. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt