The application was vulnerable to a session fixation that could be used hijack accounts.
phppointofsale php point of sale 19.0