CVE-2025-4068

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Apr 29, 2025
Updated: May 2, 2025
CWE ID 119
CWE ID 121

Summary

CVE-2025-4068 is a critical vulnerability affecting the changeprize function in the Simple Movie Ticket Booking System 1.0. This issue results in a stack-based buffer overflow, which can be exploited by manipulating the argument "prize" locally. The exploit for this vulnerability has been disclosed to the public, increasing the risk of potential attacks. Users of the Simple Movie Ticket Booking System 1.0 are strongly advised to apply the necessary patches or upgrades as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share