CVE-2022-40287
EUVD-2022-4358431.10.2022, 21:15
The application was found to be vulnerable to an authenticated Stored Cross-Site Scripting (XSS) vulnerability in messaging functionality, leading to privilege escalation or a compromise of a targeted account.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| phppointofsale | php_point_of_sale | 19.0 |
𝑥
= Vulnerable software versions