PT-2025-38675 · Lioncoders · Salepro Pos

Jaredloo

·

Published

2025-09-22

·

Updated

2025-09-22

·

CVE-2025-10776

CVSS v3.1

3.7

Low

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions LionCoders SalePro POS versions prior to 5.5.1
Description A security issue exists in LionCoders SalePro POS that involves the cleartext transmission of sensitive information during some unknown processing related to the Login component. This issue can be exploited remotely and is considered to have high complexity with difficult exploitability. The exploit is publicly available. The vendor was contacted regarding this disclosure but did not respond.
Recommendations Update LionCoders SalePro POS to version 5.5.1 or later.

Exploit

Fix

Cleartext Transmission of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2025-10776

Affected Products

Salepro Pos