CVE-2025-11145

HIGH

CBK Soft Software Hardware Electronic Computer Systems Industry and...

Title source: llm
STIX 2.1

Description

Observable Discrepancy, Exposure of Sensitive Information to an Unauthorized Actor, Exposure of Private Personal Information to an Unauthorized Actor vulnerability in CBK Soft Software Hardware Electronic Computer Systems Industry and Trade Inc. EnVision allows Account Footprinting. This issue affects enVision: before 250566.

References (2)

Core 2
Core References
Third Party Advisory, US Government Resource government-resource broken-link
https://www.usom.gov.tr/bildirim/tr-25-0361

Scores

CVSS v3 7.5
EPSS 0.0029
EPSS Percentile 20.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-200 CWE-203 CWE-359
Status published
Products (1)
CBK Soft Software Hardware Electronic Computer Systems Industry and Trade Inc./enVision < 250566
Published Oct 24, 2025
Tracked Since Feb 18, 2026