9.8

CVE-2025-7016

Improper Access Control in Akinsoft's QR Menu

Improper Access Control vulnerability in Akın Software Computer Import Export Industry and Trade Ltd. QR Menu allows Authentication Abuse.

This issue affects QR Menu: before s1.05.12.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AkinsoftQr Menu Version < s1.05.12
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.3% 0.214
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
iletisim@usom.gov.tr 8 2.1 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

https://www.usom.gov.tr/bildirim/tr-26-0006
Third Party Advisory
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0006