PT-2022-25324 · Php Point Of Sale Llc+1 · Php Point Of Sale

Edward Prior

·

Published

2022-10-31

·

Updated

2025-05-06

·

CVE-2022-40289

CVSS v3.1

9.0

Critical

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions mentioned.
Description The application is affected by an authenticated Stored Cross-Site Scripting (XSS) issue in the upload and download functionality. This could allow attackers to escalate privileges or compromise accounts by coercing them into accessing targeted files.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-40289

Affected Products

Php Point Of Sale