IDOR in PozitifIK's Pik Online
Vulnerability Description
Authorization Bypass Through User-Controlled Key vulnerability in Pik Online Yazılım Çözümleri A.Ş. Pik Online allows Exploitation of Trusted Identifiers. This issue affects Pik Online: before 3.1.5.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-5261
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Şahnur Eren ALOĞLU
References
More from Pik Online Yazılım Çözümleri A.Ş.
View All →Affected Vendor
Pik Online Yazılım Çözümleri A.Ş.
View all reports →