Home

Description

Cross-Site request forgery (CSRF) vulnerability in Sitemio Information Technologies Trade Ltd. Co. WISECP allows Cross Site Request Forgery. This issue affects WISECP: through 20022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED Reserved 2025-10-20 | Published 2026-05-20 | Updated 2026-05-20 | Assigner TR-CERT




HIGH: 8.0CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Problem types

CWE-352 Cross-Site request forgery (CSRF)

Product status

Default status
unknown

Any version
affected

Credits

Akıner KISA finder

References

siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0262 government-resource

cve.org (CVE-2025-11954)

nvd.nist.gov (CVE-2025-11954)

Download JSON