9.8
CVE-2025-7016
- EPSS 0.3%
- Veröffentlicht 29.01.2026 11:45:06
- Zuletzt bearbeitet 05.06.2026 15:16:43
- Quelle iletisim@usom.gov.tr
- CVE-Watchlists
- Unerledigt
Improper Access Control in Akinsoft's QR Menu
Improper Access Control vulnerability in Akın Software Computer Import Export Industry and Trade Ltd. QR Menu allows Authentication Abuse. This issue affects QR Menu: before s1.05.12.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.3% | 0.214 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| iletisim@usom.gov.tr | 8 | 2.1 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
https://www.usom.gov.tr/bildirim/tr-26-0006
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0006