Sourcecodester Point Of Sales vulnerabilities

3 known vulnerabilities affecting sourcecodester/point_of_sales.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2025-12293MEDIUMCVSS 6.9v1.02025-10-27
CVE-2025-12293 [MEDIUM] CWE-74 CVE-2025-12293: A vulnerability was identified in SourceCodester Point of Sales 1.0. This issue affects some unknown A vulnerability was identified in SourceCodester Point of Sales 1.0. This issue affects some unknown processing of the file /category.php. Such manipulation of the argument Category leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
cvelistv5nvd
CVE-2025-12292MEDIUMCVSS 6.9v1.02025-10-27
CVE-2025-12292 [MEDIUM] CWE-74 CVE-2025-12292: A vulnerability was determined in SourceCodester Point of Sales 1.0. This vulnerability affects unkn A vulnerability was determined in SourceCodester Point of Sales 1.0. This vulnerability affects unknown code of the file /index.php. This manipulation of the argument Username causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
cvelistv5nvd
CVE-2025-12294MEDIUMCVSS 5.1v1.02025-10-27
CVE-2025-12294 [MEDIUM] CWE-74 CVE-2025-12294: A security flaw has been discovered in SourceCodester Point of Sales 1.0. Impacted is an unknown fun A security flaw has been discovered in SourceCodester Point of Sales 1.0. Impacted is an unknown function of the file /delete_category.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be exploited.
cvelistv5nvd
Sourcecodester Point Of Sales vulnerabilities | cvebase