CVE-2023-23021: ORETNOM23 Pos - Point Of Sale System

Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.

Cross Site Scripting (XSS) vulnerability in sourcecodester oretnom23 pos point sale system 1.0, allows attackers to execute arbitrary code via the code, name, and description inputs in file Main.php.

Affected products

  • ORETNOM23 Pos - Point Of Sale System: version 1.0 only

Published 2024-05-01. Last modified 2026-06-17.