📦 Cups Easy

by Ajaysharma

🔍 What is Cups Easy?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-23896

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23896 is a stored cross-site scripting (XSS) vulnerability in Cups Easy Purchase & Inventory software version 1.0. An attacker can inject malicious scripts via the 'batchno' parameter in stoc...

CVE-2024-23893

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23893 is a stored cross-site scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows attackers to inject malicious scripts via the costcenterid parameter in /c...

CVE-2024-23891

HIGH CVSS 8.2 Jan 26, 2024

This is a Cross-Site Scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows remote attackers to inject malicious scripts via the itemid parameter. Exploitation require...

CVE-2024-23885

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23885 is a stored Cross-Site Scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows remote attackers to inject malicious scripts via the countryid parameter i...

CVE-2024-23887

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23887 is a stored Cross-Site Scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows remote attackers to inject malicious scripts via the grndate parameter in ...

CVE-2024-23889

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23889 is a stored cross-site scripting (XSS) vulnerability in Cups Easy version 1.0 that allows remote attackers to inject malicious scripts via the itemgroupid parameter. When exploited, thi...

CVE-2024-23881

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23881 is a stored Cross-Site Scripting (XSS) vulnerability in Cups Easy version 1.0 that allows remote attackers to inject malicious scripts via the description parameter in statelist.php. Th...

CVE-2024-23883

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23883 is a stored cross-site scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows attackers to inject malicious scripts via the description parameter in tax...

CVE-2024-23875

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23875 is a stored cross-site scripting (XSS) vulnerability in Cups Easy version 1.0 that allows attackers to inject malicious scripts via the issuanceno parameter. This could enable session c...

CVE-2024-23877

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23877 is a stored cross-site scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows remote attackers to inject malicious scripts via the currencyid parameter ...

CVE-2024-23879

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23879 is a stored cross-site scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows attackers to inject malicious scripts via the description parameter in sta...

CVE-2024-23869

HIGH CVSS 8.2 Jan 26, 2024

This is a stored Cross-Site Scripting (XSS) vulnerability in Cups Easy Purchase & Inventory software version 1.0. It allows remote attackers to inject malicious scripts via the 'issuanceno' parameter ...

CVE-2024-23871

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23871 is a stored cross-site scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows attackers to inject malicious scripts via the description parameter in uni...

CVE-2024-23873

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23873 is a stored cross-site scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows attackers to inject malicious scripts via the currencyid parameter in curr...

CVE-2024-23865

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23865 is a stored cross-site scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0. Attackers can inject malicious scripts via the description parameter in taxstructurel...

CVE-2024-23867

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23867 is a stored Cross-Site Scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows remote attackers to inject malicious scripts via the stateid parameter in ...

CVE-2024-23863

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23863 is a stored Cross-Site Scripting (XSS) vulnerability in Cups Easy Purchase & Inventory version 1.0 that allows attackers to inject malicious scripts via the description parameter in tax...

CVE-2024-23859

HIGH CVSS 8.2 Jan 26, 2024

This is a Cross-Site Scripting (XSS) vulnerability in Cups Easy Purchase & Inventory software version 1.0 that allows attackers to inject malicious scripts via the flatamount parameter. Exploitation r...

CVE-2024-23861

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23861 is a stored Cross-Site Scripting (XSS) vulnerability in Cups Easy version 1.0 that allows remote attackers to inject malicious scripts via the unitofmeasurementid parameter. Exploitatio...

CVE-2024-23857

HIGH CVSS 8.2 Jan 26, 2024

CVE-2024-23857 is a Cross-Site Scripting (XSS) vulnerability in Cups Easy (Purchase & Inventory) version 1.0 that allows remote attackers to inject malicious scripts via the 'batchno' parameter in /cu...