ZeroHour

Vulnerabilities

9 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2025-10067
+3 in the same advisory: …10066 …10065 …10064
A vulnerability was detected in itsourcecode POS Point of Sale System 1.0.

A vulnerability was detected in itsourcecode POS Point of Sale System 1.0. The impacted element is an unknown function of the file /inventory/main/vendors/datatables/unit_testing/templates/empty_table.php. Performing manipulation of the argument scripts results in cross site scripting. It is possible to initiate the attack remotely. The exploit is now public and may be used.

NVD description · AI analysis pending
2.1<1% PoC
  • facebook-kimmymatillano point of sale system
CVE-2025-10063
+2 in the same advisory: …10029 …10028
A vulnerability was identified in itsourcecode POS Point of Sale System 1.0.

A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of the file /inventory/main/vendors/datatables/unit_testing/templates/deferred_table.php. The manipulation of the argument scripts leads to cross site scripting. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

NVD description · AI analysis pending
2.1
group max
<1% PoC
  • facebook-kimmymatillano point of sale system
CVE-2025-10027
+1 in the same advisory: …10026
A vulnerability was determined in itsourcecode POS Point of Sale System 1.0.

A vulnerability was determined in itsourcecode POS Point of Sale System 1.0. Affected by this issue is some unknown functionality of the file /inventory/main/vendors/datatables/unit_testing/templates/2512.php. This manipulation of the argument scripts causes cross site scripting. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.

NVD description · AI analysis pending
2.0<1% PoC
  • facebook-kimmymatillano point of sale system