PT-2024-30051 · Sampaş Holding · Akos

Yasin Teki̇n

·

Published

2024-09-03

·

Updated

2025-10-14

·

CVE-2024-4259

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SAMPAŞ Holding AKOS versions through 20240902
Description The issue is related to Improper Privilege Management, allowing the collection of data as provided by users. The vendor was contacted about this disclosure but did not respond. There is a potential risk of system compromise due to this issue.
Recommendations For versions through 20240902, patch immediately and review privileges to mitigate the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authorization

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-4259

Affected Products

Akos