CVE Published: 31/10/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: TML |
Vendor: PHP Point of Sale LLC |
Product: PHP Point of Sale Status : PUBLISHED
CVE-2022-40296 Description
The application was vulnerable to a Server-Side Request Forgery attacks, allowing the backend server to interact with unexpected endpoints, potentially including internal and local services, leading to attacks in other downstream systems.