Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Bna Informatics PosPratik allows XSS Through HTTP Query Strings.
This issue affects PosPratik: before v3.2.1.
Metrics
Affected Vendors & Products
References
History
Tue, 02 Jun 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Bna Informatics PosPratik allows XSS Through HTTP Query Strings.This issue affects PosPratik: before v3.2.1. | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Bna Informatics PosPratik allows XSS Through HTTP Query Strings. This issue affects PosPratik: before v3.2.1. |
| References |
|
Wed, 06 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bna
Bna pospratik |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:bna:pospratik:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Bna
Bna pospratik |
|
| Metrics |
cvssV3_1
|
Mon, 04 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bnabilisim
Bnabilisim pospratik |
|
| CPEs | cpe:2.3:a:bnabilisim:pospratik:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Bnabilisim
Bnabilisim pospratik |
|
| Metrics |
ssvc
|
Mon, 04 Nov 2024 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Bna Informatics PosPratik allows XSS Through HTTP Query Strings.This issue affects PosPratik: before v3.2.1. | |
| Title | HTML Injection in Bna Informatics' PosPratik | |
| Weaknesses | CWE-80 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: TR-CERT
Published: 2024-11-04T12:37:09.146Z
Updated: 2026-06-02T07:48:35.272Z
Reserved: 2024-09-24T12:44:48.977Z
Link: CVE-2024-9147
Updated: 2024-11-04T14:16:55.846Z
Status : Modified
Published: 2024-11-04T13:17:06.120
Modified: 2026-06-02T09:16:14.140
Link: CVE-2024-9147
No data.