CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2025-1269: Open Redirect in HAVELSAN's Open Source Project Liman MYS

4.8 CVSS

Description

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in HAVELSAN Liman MYS allows Cross-Site Flashing.This issue affects Liman MYS: before 2.1.1 - 1010.

Classification

CVE ID: CVE-2025-1269

CVSS Base Severity: MEDIUM

CVSS Base Score: 4.8

CVSS Vector: CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:C/C:L/I:N/A:L

Affected Products

Vendor: HAVELSAN

Product: Liman MYS

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.02% (probability of being exploited)

EPSS Percentile: 3.83% (scored less or equal to compared to others)

EPSS Date: 2025-03-19 (when was this score calculated)

References

https://github.com/limanmys/core/releases/tag/release.master.1010
https://www.usom.gov.tr/bildirim/tr-25-0038

Timeline