PT-2026-7842 · Farktor · Farktor Software E-Commerce Package

Berat Arslan

·

Published

2026-02-12

·

Updated

2026-02-12

·

CVE-2025-13004

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions Farktor Software E-Commerce Package versions through 27112025
Description An authorization bypass exists in Farktor Software E-Commerce Package due to manipulation of user-controlled variables. This allows bypassing intended access restrictions.
Recommendations Versions prior to 27112025 should be updated.

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2025-13004

Affected Products

Farktor Software E-Commerce Package