Critical
Low
Medium

CVE-2025-56382

Alias:

Overview

A stored Cross-site scripting (XSS) vulnerability exists in the Customer Management Module of LionCoders SalePro POS 5.4.8. An authenticated attacker can inject arbitrary web script or HTML via the 'Customer Name' parameter when creating or editing customer profiles. This malicious input is improper...

Critical
Low
Medium
No items found.

Severity / CVSS Score:  (Critical)

CWE:

Discovery date:

Authentication required: NoneYes

Attack Vector: None

Affected Components

Kodem Deep Dive

Stop the waste.
Protect your environment with Kodem.

Get a personalized demo
Get a personalized demo