ZeroHour

CVE-2021-41492

PoC ×2
CVSS 3.1
9.8 critical
EPSS
2%p76
Published
()
Modified
Description

Multiple SQL Injection vulnerabilities exist in Sourcecodester Simple Cashiering System (POS) 1.0 via the (1) Product Code in the pos page in cashiering. (2) id parameter in manage_products and the (3) t paramater in actions.php.

Vendors
simple cashiering system project
Products
simple cashiering system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.