CVE-2022-40295
Authenticated sensitive information disclosure in PHP Point of Sale version 19.0, by PHP Point of Sale, LLC.
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The application was vulnerable to an authenticated information disclosure, allowing administrators to view unsalted user passwords, which could lead to the compromise of plaintext passwords via offline attacks.
| CWE | CWE-916 |
| Vendor | php point of sale llc |
| Product | php point of sale |
| Published | Oct 31, 2022 |
| Last Updated | Aug 3, 2024 |
Stay Ahead of the Next One
Get instant alerts for php point of sale llc php point of sale
Be the first to know when new unknown vulnerabilities affecting php point of sale llc php point of sale are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
PHP Point of Sale LLC / PHP Point of Sale
19.0