Skip to main content

Vendor/product archive

aptsys / gemscms_backend CVEs

Beta · best-effort

5 CVEs tagged to aptsys / gemscms_backend2 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2025-52026

Published Jan 23, 2026

An information disclosure vulnerability exists in the /srvs/membersrv/getCashiers endpoint of the Aptsys gemscms backend platform thru 2025-05-28. This unauthenticated endpoint re…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-52025

Published Jan 23, 2026

An SQL Injection vulnerability exists in the GetServiceByRestaurantID endpoint of the Aptsys gemscms POS Platform backend thru 2025-05-28. The vulnerability arises because user in…

CVSS 9.4 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-52024

Published Jan 23, 2026

A vulnerability exists in the Aptsys POS Platform Web Services module thru 2025-05-28, which exposes internal API testing tools to unauthenticated users. By accessing specific URL…

CVSS 9.4 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-52023

Published Jan 23, 2026

A vulnerability in the PHP backend of gemscms.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed error messages that disclose internal file…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-52022

Published Jan 23, 2026

A vulnerability in the PHP backend of gemsloyalty.aptsys.com.sg thru 2025-05-28 allows unauthenticated remote attackers to trigger detailed error messages that disclose internal f…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1