CVE-2025-9902
IDOR in Akınsoft QRMenu
CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
15th
Authorization Bypass Through User-Controlled Key vulnerability in AKIN Software Computer Import Export Industry and Trade Co. Ltd. QRMenu allows Privilege Abuse. This issue affects QRMenu: from 1.05.12 before Version dated 05.09.2025.
| CWE | CWE-639 |
| Vendor | akin software computer import export industry and trade co. ltd. |
| Product | qrmenu |
| Published | Oct 13, 2025 |
| Last Updated | Jun 5, 2026 |
Stay Ahead of the Next One
Get instant alerts for akin software computer import export industry and trade co. ltd. qrmenu
Be the first to know when new high vulnerabilities affecting akin software computer import export industry and trade co. ltd. qrmenu are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Affected Versions
AKIN Software Computer Import Export Industry and Trade Co. Ltd. / QRMenu
1.05.12 < Version dated 05.09.2025
References
Credits
Berat ARSLAN