CVE Published: 31/10/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: TML |
Vendor: PHP Point of Sale LLC |
Product: PHP Point of Sale Status : PUBLISHED
CVE-2022-40295 Description
The application was vulnerable to an authenticated information disclosure, allowing administrators to view unsalted user passwords, which could lead to the compromise of plaintext passwords via offline attacks.