CNNVD-202511-811 Information

CNNVD ID

CNNVD-202511-811

CVE-2025-63689

  • CNNVD Published: 2025-11-07

Description (Chinese)

money-pos(麦尼收银系统)是麦尼Money个人开发者的一个收银系统。 money-pos存在安全漏洞,该漏洞源于orderby参数存在SQL注入漏洞,可能导致执行任意代码。

Description (English)

Money-pos (Many cashier system) is a cashier system for Manny Money personal developers. Money-pos has a security loophole, which stems from the orderby parameter with a leak in SQL, which could lead to the implementation of any code.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-11-07

Last Modified

2026-02-24

References

https://github.com/ycf1998/money-pos/issues/3 https://gist.github.com/LockeTom/2ed0f3751c88542f48b7c230468d2a46 https://access.redhat.com/security/cve/cve-2025-63689

Share on: