🔐 CVE Alert

CVE-2025-9902

HIGH 7.5

IDOR in Akınsoft QRMenu

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
15th

Authorization Bypass Through User-Controlled Key vulnerability in AKIN Software Computer Import Export Industry and Trade Co. Ltd. QRMenu allows Privilege Abuse. This issue affects QRMenu: from 1.05.12 before Version dated 05.09.2025.

CWE CWE-639
Vendor akin software computer import export industry and trade co. ltd.
Product qrmenu
Published Oct 13, 2025
Last Updated Jun 5, 2026
Stay Ahead of the Next One

Get instant alerts for akin software computer import export industry and trade co. ltd. qrmenu

Be the first to know when new high vulnerabilities affecting akin software computer import export industry and trade co. ltd. qrmenu are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None

Affected Versions

AKIN Software Computer Import Export Industry and Trade Co. Ltd. / QRMenu
1.05.12 < Version dated 05.09.2025

References

NVD ↗ CVE.org ↗ EPSS Data ↗
usom.gov.tr: https://www.usom.gov.tr/bildirim/tr-25-0333 siberguvenlik.gov.tr: https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-25-0333

Credits

Berat ARSLAN