CVE-2024-4259: Sambas Akos

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in SAMPAŞ Holding AKOS (AkosCepVatandasService), SAMPAŞ Holding AKOS (TahsilatService) allows Collect Data as Provided by Users. This issue affects AKOS (AkosCepVatandasService): before V2.0; AKOS (TahsilatService): before V1.0.7.

Affected products

  • Sambas Akos: up to and including 2024-09-02

Published 2024-09-03. Last modified 2026-06-17.