PT-2025-41566 · Quest Information Systems · Aybs Interaktif
CVE-2025-8887
·
Published
2025-10-10
·
Updated
2025-10-10
CVSS v3.1
6.1
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Usta Information Systems Inc. Aybs Interaktif versions 2024 through 28082025
Description
An authorization bypass exists in Usta Information Systems Inc. Aybs Interaktif due to user-controlled keys, missing authorization checks, and exposure of sensitive information. This allows for forceful browsing, parameter injection, and manipulation of input data.
Recommendations
Apply updates to address the authorization issues in versions 2024 through 28082025.
Fix
IDOR
Information Disclosure
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Aybs Interaktif