9
CVSSv3

CVE-2022-40289

Published: 31/10/2022 Updated: 25/10/2023
CVSS v3 Base Score: 9 | Impact Score: 6 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

The application was vulnerable to an authenticated Stored Cross-Site Scripting (XSS) in the upload and download functionality, which could be leveraged to escalate privileges or compromise any accounts they can coerce into observing the targeted files.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phppointofsale php point of sale 19.0