CVE-2025-10465
HIGH EPSS 30.8%
Published Feb 9, 20264mo ago · Modified Jun 5, 20263w ago
8.8 CVSS 3.1
Published Feb 9, 2026 4mo ago
Last Modified Jun 5, 2026 3w ago
Description
Unrestricted Upload of File with Dangerous Type vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. Sensaway allows Upload a Web Shell to a Web Server. This issue affects Sensaway: through 09022026. NOTE: Because the product was developed using outdated technology, the manufacturer is unable to fix the relevant vulnerabilities. Users of the Sensaway application are advised to contact the manufacturer and review updated products developed with newer technology.
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Attack Vector Network
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High
Threat Intelligence
EPSS Exploit Probability
30.8% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available
Weaknesses 1
CWE-434 Unrestricted Upload of File with Dangerous Type Resource Mgmt
References 2
- siberguvenlik.gov.tr https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0022
- usom.gov.tr https://www.usom.gov.tr/bildirim/tr-26-0022
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.