Vulnerabilities (CVE)

Filtered by vendor Abacre Subscribe
Filtered by product Retail Point Of Sale
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-67261 1 Abacre 1 Retail Point Of Sale 2026-01-30 N/A 6.5 MEDIUM
Abacre Retail Point of Sale 14.0.0.396 is vulnerable to content-based blind SQL injection. The vulnerability exists in the Search function of the Orders page.
CVE-2025-67263 1 Abacre 1 Retail Point Of Sale 2026-01-30 N/A 6.1 MEDIUM
Abacre Retail Point of Sale 14.0.0.396 is affected by a stored cross-site scripting (XSS) vulnerability in the Clients module. The application fails to properly sanitize user-supplied input stored in the Name and Surname fields. An attacker can insert malicious HTML or script content into these fields, which, persisted in the database.