PT-2025-41566 · Quest Information Systems · Aybs Interaktif

Published

2025-10-10

·

Updated

2025-10-10

·

CVE-2025-8887

CVSS v3.1

6.1

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions Usta Information Systems Inc. Aybs Interaktif versions 2024 through 28082025
Description An authorization bypass exists in Usta Information Systems Inc. Aybs Interaktif due to user-controlled keys, missing authorization checks, and exposure of sensitive information. This allows for forceful browsing, parameter injection, and manipulation of input data.
Recommendations Apply updates to address the authorization issues in versions 2024 through 28082025.

Fix

IDOR

Missing Authorization

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2025-8887

Affected Products

Aybs Interaktif