Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2023-36347

Disclosure Date: June 30, 2023 (last updated February 25, 2025)
A broken authentication mechanism in the endpoint excel.php of POS Codekop v2.0 allows unauthenticated attackers to download selling data.
Attacker Value
Unknown

CVE-2023-36348

Disclosure Date: June 23, 2023 (last updated February 25, 2025)
POS Codekop v2.0 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the filename parameter.
Attacker Value
Unknown

CVE-2023-36346

Disclosure Date: June 23, 2023 (last updated February 25, 2025)
POS Codekop v2.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the nm_member parameter at print.php.
Attacker Value
Unknown

CVE-2023-36345

Disclosure Date: June 23, 2023 (last updated February 25, 2025)
A Cross-Site Request Forgery (CSRF) in POS Codekop v2.0 allows attackers to escalate privileges.