CVE-2025-7015: Session Hijacking in Akinsoft's QR Menu
Published Jan 29, 2026
·Updated
Session Fixation vulnerability in Akın Software Computer Import Export Industry and Trade Ltd. QR Menu allows Session Fixation.
This issue affects QR Menu: before s1.05.12.
Affected Software
3 affected components
Akın Software Computer Import Export Industry and Trade Ltd. QR Menu<s1.05.12
Akinsoft QR Menu<s1.05.12
Akinsoft QR Menu<s1.05.12
Event History
Jan 29, 2026
CVE Published
via MITRE·11:40 AM
Data Sourced
via MITRE·11:40 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-7015?
CVE-2025-7015 has a moderate severity rating due to its potential to allow session hijacking.
2
How do I fix CVE-2025-7015?
To fix CVE-2025-7015, update the Akın Software QR Menu to version 1.05.12 or later.
3
What systems are affected by CVE-2025-7015?
CVE-2025-7015 affects all versions of Akinsoft QR Menu prior to version 1.05.12.
4
What type of vulnerability is CVE-2025-7015?
CVE-2025-7015 is classified as a session fixation vulnerability.
5
Can CVE-2025-7015 be exploited remotely?
Yes, CVE-2025-7015 can be exploited remotely, allowing attackers to hijack user sessions.