A vulnerability was found in itsourcecode POS Point of Sale System 1.0. Affected by this vulnerability is an unknown functionality of the file /inventory/main/vendors/datatables/unit_testing/templates/-complex_header.php. The manipulation of the argument scripts results in cross site scripting. It is possible to launch the attack remotely. The exploit has been made public and could be used.
References
Link | Resource |
---|---|
https://github.com/AlphabugX/CVE-Report/blob/main/CVE-003.md | Exploit Third Party Advisory |
https://itsourcecode.com/ | Product |
https://vuldb.com/?ctiid.322741 | Permissions Required VDB Entry |
https://vuldb.com/?id.322741 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.643941 | Third Party Advisory VDB Entry |
Configurations
History
10 Sep 2025, 16:45
Type | Values Removed | Values Added |
---|---|---|
First Time |
Facebook-kimmymatillano
Facebook-kimmymatillano point Of Sale System |
|
CPE | cpe:2.3:a:facebook-kimmymatillano:point_of_sale_system:1.0:*:*:*:*:*:*:* | |
References | () https://github.com/AlphabugX/CVE-Report/blob/main/CVE-003.md - Exploit, Third Party Advisory | |
References | () https://itsourcecode.com/ - Product | |
References | () https://vuldb.com/?ctiid.322741 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.322741 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?submit.643941 - Third Party Advisory, VDB Entry |
05 Sep 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-09-05 20:15
Updated : 2025-09-10 16:45
NVD link : CVE-2025-10026
Mitre link : CVE-2025-10026
CVE.ORG link : CVE-2025-10026
JSON object : View
Products Affected
facebook-kimmymatillano
- point_of_sale_system