CVE-2025-7016
Improper Access Control in Akın QR Menu Enables Authentication Abuse
Publication date: 2026-01-29
Last updated on: 2026-03-09
Assigner: Computer Emergency Response Team of the Republic of Turkey
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| akinsoft | qr_menu | to s1.05.12 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-284 | The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an Improper Access Control issue in Akın Software's QR Menu application, which allows Authentication Abuse. It affects versions before s1.05.12, meaning unauthorized users may bypass authentication mechanisms.
How can this vulnerability impact me? :
The vulnerability can lead to unauthorized access, potentially allowing attackers to compromise confidentiality, integrity, and availability of the system or data, as indicated by the high CVSS score with high impact on confidentiality, integrity, and availability.