cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forbarcode-scanner-lite-pos-to-manage-products-inventory-and-orders barcode-scanner-lite-pos-to-manage-products-inventory-and-orders

Direction: ascending
Jun 07, 2024

Barcode Scanner and Inventory manager. POS (Point of Sale) – scan barcodes & create orders with barcode reader. # CVE-2024-33565

CVE, Research URL

CVE-2024-33565

Date
Jun 09, 2024
Research Description
Missing Authorization vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.5.3.
Affected versions
Min -, max -.
Status
vulnerable

Barcode Scanner and Inventory manager. POS (Point of Sale) – scan barcodes & create orders with barcode reader. # CVE-2023-52215

CVE, Research URL

CVE-2023-52215

Date
Jan 08, 2024
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UkrSolution Simple Inventory Management – just scan barcode to manage products and orders. For WooCommerce.This issue affects Simple Inventory Management – just scan barcode to manage products and orders. For WooCommerce: from n/a through 1.5.1.
Affected versions
Min -, max -.
Status
vulnerable

Barcode Scanner and Inventory manager. POS (Point of Sale) – scan barcodes & create orders with barcode reader. # CVE-2024-32589

CVE, Research URL

CVE-2024-32589

Date
-
Research Description
Barcode Scanner (+Mobile App) &#8211; Inventory manager, Order fulfillment system, POS (Point of Sale) [barcode-scanner-lite-pos-to-manage-products-inventory-and-orders] < 1.5.4 CVE-2024-32589
Affected versions
Min -, max -.
Status
vulnerable

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2024-33567

CVE, Research URL

CVE-2024-33567

Date
May 17, 2024
Research Description
Improper Privilege Management vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows Privilege Escalation.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.5.3.
Affected versions
Min -, max -.
Status
vulnerable

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2023-52221

CVE, Research URL

CVE-2023-52221

Date
Jan 24, 2024
Research Description
Unrestricted Upload of File with Dangerous Type vulnerability in UkrSolution Barcode Scanner and Inventory manager.This issue affects Barcode Scanner and Inventory manager: from n/a through 1.5.1.
Affected versions
Min -, max -.
Status
vulnerable

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2024-27998

CVE, Research URL

CVE-2024-27998

Date
Mar 19, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows Reflected XSS.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.5.3.
Affected versions
Min -, max -.
Status
vulnerable

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2024-2661

CVE, Research URL

CVE-2024-2661

Date
May 02, 2024
Research Description
The Barcode Scanner and Inventory manager. POS (Point of Sale) – scan barcodes & create orders with barcode reader. plugin for WordPress is vulnerable to blind SQL Injection via the ‘currentIds’ parameter in all versions up to, and including, 1.5.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with subscriber access or higher, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
Affected versions
Min -, max -.
Status
vulnerable

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2024-34556

CVE, Research URL

CVE-2024-34556

Date
May 14, 2024
Research Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.5.4.
Affected versions
Min -, max -.
Status
vulnerable

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2024-34557

CVE, Research URL

CVE-2024-34557

Date
May 14, 2024
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.5.4.
Affected versions
Min -, max -.
Status
vulnerable
Jul 15, 2024

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2024-38708

CVE, Research URL

CVE-2024-38708

Date
Jul 22, 2024
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows SQL Injection.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.6.1.
Affected versions
Min -, max -.
Status
vulnerable
Dec 15, 2024

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2024-54265

CVE, Research URL

CVE-2024-54265

Date
Dec 13, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows Reflected XSS.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.6.6.
Affected versions
Min -, max -.
Status
vulnerable
Jan 23, 2025

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2025-22723

CVE, Research URL

CVE-2025-22723

Date
Jan 21, 2025
Research Description
Unrestricted Upload of File with Dangerous Type vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows Upload a Web Shell to a Web Server. This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.6.7.
Affected versions
Min -, max -.
Status
vulnerable
Aug 16, 2025

Barcode Scanner and Inventory manager. POS (Point of Sale) &#8211; scan barcodes &amp; create orders with barcode reader. # CVE-2025-54715

CVE, Research URL

CVE-2025-54715

Date
Aug 15, 2025
Research Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Dmitry V. (CEO of "UKR Solution") Barcode Scanner with Inventory & Order Manager allows Path Traversal. This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.9.0.
Affected versions
Min -, max -.
Status
vulnerable