VYPR

Simple Cashiering System

by Simple Cashiering System Project

CVEs (2)

  • CVE-2021-41492CriNov 3, 2021
    risk 0.64cvss 9.8epss 0.02

    Multiple SQL Injection vulnerabilities exist in Sourcecodester Simple Cashiering System (POS) 1.0 via the (1) Product Code in the pos page in cashiering. (2) id parameter in manage_products and the (3) t paramater in actions.php.

  • CVE-2022-3949LowNov 11, 2022
    risk 0.23cvss 3.5epss 0.00

    A vulnerability, which was classified as problematic, has been found in Sourcecodester Simple Cashiering System. This issue affects some unknown processing of the component User Account Handler. The manipulation of the argument fullname leads to cross site scripting. The attack…