CNNVD-202507-2118 Information

CNNVD ID

CNNVD-202507-2118

CVE-2025-40724

  • CNNVD Published: 2025-07-16

Description (Chinese)

Codester Pharmacy POS PHP Script是Codester开源的一个药房销售系统。 Codester Pharmacy POS PHP Script存在跨站脚本漏洞,该漏洞源于存储型跨站脚本,可能导致执行恶意JavaScript代码。

Description (English)

Codester Pharmacy POS PHP Script is a pharmacies sales system open to the Codester. Codester Pharmacy POS PHP Script has a cross-site script loophole, which originates in a storage-type cross-site script and may result in the implementation of malicious JavaScript code.

Hazard Level

High

Vulnerability Type

跨站脚本

Affected Vendor

CODESYS

Published

2025-07-16

Last Modified

2026-02-24

References

https://www.incibe.es/en/incibe-cert/notices/aviso/stored-cross-site-scripting-xss-pharmacy-pos-php-script

Patch

https://www.codester.com/items/45330/pharmacy-pos-php-script

Share on: