Записи aptsys
5 опубликованных записей вендора aptsys.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-209 Generation of Error Message Containing Sensitive Information2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-306 Missing Authentication for Critical Function1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
37Наблюдать | CVE-2025-52024Эксплойта нет | A vulnerability exists in the Aptsys POS Platform Web Services module thru 2025-05-28, which exposes internal API testing tools to unauthentaptsys · gemscms backend · CWE-306 | Критическая9,4 | — | 0,5 % | 23 янв. 2026 г. |
37Наблюдать | CVE-2025-52025Эксплойта нет | An SQL Injection vulnerability exists in the GetServiceByRestaurantID endpoint of the Aptsys gemscms POS Platform backend thru 2025-05-28.aptsys · gemscms backend · CWE-89 | Критическая9,4 | — | 0,4 % | 23 янв. 2026 г. |
30Наблюдать | CVE-2025-52026Эксплойта нет | An information disclosure vulnerability exists in the /srvs/membersrv/getCashiers endpoint of the Aptsys gemscms backend platform thru 2025-aptsys · gemscms backend · CWE-200 | Высокая7,5 | — | 0,3 % | 23 янв. 2026 г. |
21Наблюдать | CVE-2025-52022Эксплойта нет | A vulnerability in the PHP backend of gemsloyalty.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed aptsys · gemscms backend · CWE-209 | Средняя5,3 | — | 0,5 % | 23 янв. 2026 г. |
21Наблюдать | CVE-2025-52023Эксплойта нет | A vulnerability in the PHP backend of gemscms.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed erroaptsys · gemscms backend · CWE-209 | Средняя5,3 | — | 0,5 % | 23 янв. 2026 г. |
- CVE-2025-5202437Наблюдать
A vulnerability exists in the Aptsys POS Platform Web Services module thru 2025-05-28, which exposes internal API testing tools to unauthent
КритическаяCVSS 9,4Эксплойта нетEPSS 0 %aptsys · gemscms backend23 янв. 2026 г.
- CVE-2025-5202537Наблюдать
An SQL Injection vulnerability exists in the GetServiceByRestaurantID endpoint of the Aptsys gemscms POS Platform backend thru 2025-05-28.
КритическаяCVSS 9,4Эксплойта нетEPSS 0 %aptsys · gemscms backend23 янв. 2026 г.
- CVE-2025-5202630Наблюдать
An information disclosure vulnerability exists in the /srvs/membersrv/getCashiers endpoint of the Aptsys gemscms backend platform thru 2025-
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %aptsys · gemscms backend23 янв. 2026 г.
- CVE-2025-5202221Наблюдать
A vulnerability in the PHP backend of gemsloyalty.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed
СредняяCVSS 5,3Эксплойта нетEPSS 0 %aptsys · gemscms backend23 янв. 2026 г.
- CVE-2025-5202321Наблюдать
A vulnerability in the PHP backend of gemscms.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed erro
СредняяCVSS 5,3Эксплойта нетEPSS 0 %aptsys · gemscms backend23 янв. 2026 г.