๐Ÿ” CVE Alert

CVE-2022-40295

UNKNOWN 0.0

Authenticated sensitive information disclosure in PHP Point of Sale version 19.0, by PHP Point of Sale, LLC.

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The application was vulnerable to an authenticated information disclosure, allowing administrators to view unsalted user passwords, which could lead to the compromise of plaintext passwords via offline attacks.

CWE CWE-916
Vendor php point of sale llc
Product php point of sale
Published Oct 31, 2022
Last Updated Aug 3, 2024
Stay Ahead of the Next One

Get instant alerts for php point of sale llc php point of sale

Be the first to know when new unknown vulnerabilities affecting php point of sale llc php point of sale are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

PHP Point of Sale LLC / PHP Point of Sale
19.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
themissinglink.com.au: https://www.themissinglink.com.au/security-advisories/cve-2022-40295