Best Pos Management System Project
Products
1- 9 CVEs
Recent CVEs
9| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-27205 | Cri | 0.64 | 9.8 | 0.01 | Mar 9, 2023 | Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the month parameter at /kruxton/sales_report.php. | ||
| CVE-2023-27204 | Cri | 0.64 | 9.8 | 0.01 | Mar 9, 2023 | Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /kruxton/manage_user.php. | ||
| CVE-2023-27203 | Cri | 0.64 | 9.8 | 0.01 | Mar 9, 2023 | Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /billing/home.php. | ||
| CVE-2023-27202 | Cri | 0.64 | 9.8 | 0.01 | Mar 9, 2023 | Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /kruxton/receipt.php. | ||
| CVE-2023-3617 | Hig | 0.48 | 7.3 | 0.01 | Jul 11, 2023 | A vulnerability was found in SourceCodester Best POS Management System 1.0. It has been classified as critical. This affects an unknown part of the file admin_class.php of the component Login Page. The manipulation of the argument username leads to sql injection. It is possible… | ||
| CVE-2023-0946 | Med | 0.41 | 6.3 | 0.00 | Feb 21, 2023 | A vulnerability has been found in SourceCodester Best POS Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file billing/index.php?id=9. The manipulation of the argument id leads to sql injection. The attack can… | ||
| CVE-2023-27206 | Med | 0.40 | 6.1 | 0.00 | Mar 9, 2023 | A cross-site scripting (XSS) vulnerability in /kruxton/navbar.php of Best POS Management System 1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the page parameter. | ||
| CVE-2023-0943 | Med | 0.34 | 4.7 | 0.02 | Feb 21, 2023 | A vulnerability, which was classified as problematic, has been found in SourceCodester Best POS Management System 1.0. This issue affects the function save_settings of the file index.php?page=site_settings of the component Image Handler. The manipulation of the argument img with… | ||
| CVE-2023-0945 | Low | 0.23 | 3.5 | 0.00 | Feb 21, 2023 | A vulnerability, which was classified as problematic, was found in SourceCodester Best POS Management System 1.0. Affected is an unknown function of the file index.php?page=add-category. The manipulation of the argument Name with the input "><img src=x… |
- risk 0.64cvss 9.8epss 0.01
Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the month parameter at /kruxton/sales_report.php.
- risk 0.64cvss 9.8epss 0.01
Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /kruxton/manage_user.php.
- risk 0.64cvss 9.8epss 0.01
Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /billing/home.php.
- risk 0.64cvss 9.8epss 0.01
Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /kruxton/receipt.php.
- risk 0.48cvss 7.3epss 0.01
A vulnerability was found in SourceCodester Best POS Management System 1.0. It has been classified as critical. This affects an unknown part of the file admin_class.php of the component Login Page. The manipulation of the argument username leads to sql injection. It is possible…
- risk 0.41cvss 6.3epss 0.00
A vulnerability has been found in SourceCodester Best POS Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file billing/index.php?id=9. The manipulation of the argument id leads to sql injection. The attack can…
- risk 0.40cvss 6.1epss 0.00
A cross-site scripting (XSS) vulnerability in /kruxton/navbar.php of Best POS Management System 1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the page parameter.
- risk 0.34cvss 4.7epss 0.02
A vulnerability, which was classified as problematic, has been found in SourceCodester Best POS Management System 1.0. This issue affects the function save_settings of the file index.php?page=site_settings of the component Image Handler. The manipulation of the argument img with…
- risk 0.23cvss 3.5epss 0.00
A vulnerability, which was classified as problematic, was found in SourceCodester Best POS Management System 1.0. Affected is an unknown function of the file index.php?page=add-category. The manipulation of the argument Name with the input "><img src=x…