Vulnerabilities (CVE)

Filtered by vendor Tecdiary Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-17110 1 Tecdiary 1 Simple Pos 2024-11-21 7.5 HIGH 9.8 CRITICAL
Simple POS 4.0.24 allows SQL Injection via a products/get_products/ columns[0][search][value] parameter in the management panel, as demonstrated by products/get_products/1.