aptsys kayıtları
aptsys üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-209 Generation of Error Message Containing Sensitive Information2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-306 Missing Authentication for Critical Function1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
37İzleyin | CVE-2025-52024İstismar yok | A vulnerability exists in the Aptsys POS Platform Web Services module thru 2025-05-28, which exposes internal API testing tools to unauthentaptsys · gemscms backend · CWE-306 | Kritik9,4 | — | %0,5 | 23 Oca 2026 |
37İzleyin | CVE-2025-52025İstismar yok | An SQL Injection vulnerability exists in the GetServiceByRestaurantID endpoint of the Aptsys gemscms POS Platform backend thru 2025-05-28.aptsys · gemscms backend · CWE-89 | Kritik9,4 | — | %0,4 | 23 Oca 2026 |
30İzleyin | CVE-2025-52026İstismar yok | An information disclosure vulnerability exists in the /srvs/membersrv/getCashiers endpoint of the Aptsys gemscms backend platform thru 2025-aptsys · gemscms backend · CWE-200 | Yüksek7,5 | — | %0,3 | 23 Oca 2026 |
21İzleyin | CVE-2025-52022İstismar yok | A vulnerability in the PHP backend of gemsloyalty.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed aptsys · gemscms backend · CWE-209 | Orta5,3 | — | %0,5 | 23 Oca 2026 |
21İzleyin | CVE-2025-52023İstismar yok | A vulnerability in the PHP backend of gemscms.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed erroaptsys · gemscms backend · CWE-209 | Orta5,3 | — | %0,5 | 23 Oca 2026 |
- CVE-2025-5202437İzleyin
A vulnerability exists in the Aptsys POS Platform Web Services module thru 2025-05-28, which exposes internal API testing tools to unauthent
KritikCVSS 9,4İstismar yokEPSS %0aptsys · gemscms backend23 Oca 2026
- CVE-2025-5202537İzleyin
An SQL Injection vulnerability exists in the GetServiceByRestaurantID endpoint of the Aptsys gemscms POS Platform backend thru 2025-05-28.
KritikCVSS 9,4İstismar yokEPSS %0aptsys · gemscms backend23 Oca 2026
- CVE-2025-5202630İzleyin
An information disclosure vulnerability exists in the /srvs/membersrv/getCashiers endpoint of the Aptsys gemscms backend platform thru 2025-
YüksekCVSS 7,5İstismar yokEPSS %0aptsys · gemscms backend23 Oca 2026
- CVE-2025-5202221İzleyin
A vulnerability in the PHP backend of gemsloyalty.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed
OrtaCVSS 5,3İstismar yokEPSS %0aptsys · gemscms backend23 Oca 2026
- CVE-2025-5202321İzleyin
A vulnerability in the PHP backend of gemscms.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed erro
OrtaCVSS 5,3İstismar yokEPSS %0aptsys · gemscms backend23 Oca 2026