CNNVD-202509-264 Information

CNNVD ID

CNNVD-202509-264

CVE-2025-9921

  • CNNVD Published: 2025-09-03

Description (Chinese)

Code-Projects POS Pharmacy System是Code-Projects开源的一个pos药房系统。 Code-Projects POS Pharmacy System 1.0版本存在安全漏洞,该漏洞源于对文件/main/products.php中参数product_code/gen_name/product_name/supplier的错误操作导致跨站脚本攻击。

Description (English)

Code-Projects POS Pharmacy Systems is a pharmacies system open to Code-Projects. A security loophole exists in version 1.0 of Code-Projects POS Pharmacy System, which results from an error in the use of the parameter program code/gen name/product name/supplier in the document/main/products.php.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Code-Projects

Published

2025-09-03

Last Modified

2026-02-24

References

https://code-projects.org/ https://github.com/chen2496088236/CVE/issues/4 https://vuldb.com/?ctiid.322322 https://vuldb.com/?id.322322 https://vuldb.com/?submit.642420

Share on: