PT-2026-7842 · Farktor · Farktor Software E-Commerce Package

·

CVE-2025-13004

·

Published

2026-02-12

·

Updated

2026-06-04

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions Farktor Software E-Commerce Package versions through 27112025
Description An authorization bypass exists in Farktor Software E-Commerce Package due to manipulation of user-controlled variables. This allows bypassing intended access restrictions.
Recommendations Versions prior to 27112025 should be updated.

Fix

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-13004

Affected Products

Farktor Software E-Commerce Package