PT-2022-25323 · Php Point Of Sale Llc+1 · Php Point Of Sale

Edward Prior

·

Published

2022-10-31

·

Updated

2025-05-06

·

CVE-2022-40288

CVSS v3.1

9.0

Critical

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned.
Description The application is vulnerable to an authenticated Stored Cross-Site Scripting (XSS) issue in the user profile data fields. This could be used to escalate privileges within the application and compromise any account that views the affected user profile.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-40288

Affected Products

Php Point Of Sale