📦 Gemscms Backend

by Aptsys

🔍 What is Gemscms Backend?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-52024

CRITICAL CVSS 9.4 Jan 23, 2026

The Aptsys POS Platform Web Services module exposes internal API testing tools to unauthenticated users, allowing attackers to discover and execute critical backend functions. This affects all product...

CVE-2025-52025

CRITICAL CVSS 9.4 Jan 23, 2026

This SQL injection vulnerability in the Aptsys gemscms POS Platform allows attackers to execute arbitrary SQL commands by manipulating the id parameter in the GetServiceByRestaurantID endpoint. This c...

CVE-2025-52026

HIGH CVSS 7.5 Jan 23, 2026

An unauthenticated information disclosure vulnerability in the Aptsys gemscms backend platform exposes cashier account details including MD5-hashed passwords that can be easily reversed. This allows r...

CVE-2025-52023

MEDIUM CVSS 5.3 Jan 23, 2026

This vulnerability in gemscms.aptsys.com.sg's PHP backend allows unauthenticated remote attackers to trigger detailed error messages that disclose internal file paths, code snippets, and stack traces....

CVE-2025-52022

MEDIUM CVSS 5.3 Jan 23, 2026

This vulnerability allows unauthenticated remote attackers to trigger detailed error messages that disclose internal file paths, code snippets, and stack traces by sending specially crafted HTTP reque...