← Back

Enterprise Resource Planning Point Of Sale System

enterprise_resource_planning_point_of_sale_system

Vendor: Junhetec • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Junhetec
1Enterprise Resource Planning Point Of Sale System
Jun 17, 2026
May 7, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additio...Show more
Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.Show less
1Junhetec
1Enterprise Resource Planning Point Of Sale System
Jun 17, 2026
May 7, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Special characters of ERP POS customer profile page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) atta...Show more
Special characters of ERP POS customer profile page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.Show less