CVE-2024-12925
Deferred
Deferred - Pending Action
BaseFortify
Publication date: 2025-09-01
Last updated on: 2026-06-01
Assigner: Computer Emergency Response Team of the Republic of Turkey
Description
Description
Improper Validation of Certificate with Host Mismatch vulnerability in Akınsoft QR Menü allows HTTP Response Splitting.
This issue affects QR Menü: from s1.05.05 before v1.05.12.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| akinsoft | qr_menü | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-297 | The product communicates with a host that provides a certificate, but the product does not properly ensure that the certificate is actually associated with that host. |