CVE-2025-13129
BaseFortify
Publication date: 2025-12-01
Last updated on: 2025-12-02
Assigner: Computer Emergency Response Team of the Republic of Turkey
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| seneka_software | onaylarim | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-841 | The product supports a session in which more than one behavior must be performed by an actor, but it does not properly ensure that the actor performs the behaviors in the required sequence. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an Improper Enforcement of Behavioral Workflow in the Onaylarım software by Seneka Software Hardware Information Technology Trade Contracting and Industry Ltd. Co. It allows Functionality Misuse, meaning that the software does not properly enforce expected workflows, potentially enabling users to misuse certain functions.
How can this vulnerability impact me? :
The vulnerability can lead to misuse of software functionality, which may result in unauthorized or unintended actions within the Onaylarım application. Although it does not impact confidentiality or availability, it can affect the integrity of operations, potentially causing incorrect or unauthorized changes.