{"cve":{"cve_id":"CVE-2025-10465","is_kev":false,"kev_date_added":null,"kev_vendor_project":null,"kev_product":null,"kev_vulnerability_name":null,"kev_short_description":null,"kev_required_action":null,"kev_due_date":null,"kev_known_ransomware":null,"kev_notes":null,"kev_cwes":null,"epss_score":0.00389,"epss_percentile":0.30623,"epss_as_of":"2026-06-23","description":"Unrestricted Upload of File with Dangerous Type vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. Sensaway allows Upload a Web Shell to a Web Server.\n\nThis issue affects Sensaway: through 09022026. NOTE: Because the product was developed using outdated technology, the manufacturer is unable to fix the relevant vulnerabilities. Users of the Sensaway application are advised to contact the manufacturer and review updated products developed with newer technology.","published_at":"2026-02-09T12:57:37.050000Z","last_modified_at":null,"cvss_v3_score":8.8,"cvss_v3_vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cvss_v3_severity":"HIGH","cvss_v4_score":null,"cvss_v4_vector":null,"cvss_v4_severity":null,"ssvc_decision":null,"ssvc_exploitation":null,"ssvc_automatable":null,"ssvc_technical_impact":null,"cwes":["CWE-434"],"nvd_references":["https://www.usom.gov.tr/bildirim/tr-26-0022","https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0022"],"vuln_status":null,"trending_score":null,"is_trending":false,"has_trended":false,"trended_number_one":false,"trending_peak_score":null,"trending_peak_rank":null,"started_trending_at":null,"trended_number_one_at":null,"summary_generated":null,"summary_generated_at":null,"summary_model":null,"created_at":"2026-06-24T00:09:39.878444Z","updated_at":"2026-06-28T23:25:06.490975Z"},"effective_severity":"HIGH","badges":[],"impact_analysis":[],"cvss_v3_decoded":{"version":"3.1","metrics":[{"metric":"AV","name":"Attack Vector","value":"N","value_label":"Network"},{"metric":"AC","name":"Attack Complexity","value":"L","value_label":"Low"},{"metric":"PR","name":"Privileges Required","value":"L","value_label":"Low"},{"metric":"UI","name":"User Interaction","value":"N","value_label":"None"},{"metric":"S","name":"Scope","value":"U","value_label":"Unchanged"},{"metric":"C","name":"Confidentiality","value":"H","value_label":"High"},{"metric":"I","name":"Integrity","value":"H","value_label":"High"},{"metric":"A","name":"Availability","value":"H","value_label":"High"}]},"cvss_v4_decoded":{"version":null,"metrics":[]},"affected":[{"vendor_slug":"birtech-information-technologies-industry-and-trade-ltd.-co.","vendor_name":"Birtech Information Technologies Industry and Trade Ltd. Co.","product_slug":"sensaway","product_name":"Sensaway","version_start":"0","version_start_inclusive":true,"version_end":"09022026","version_end_inclusive":true,"cpe23_uri":"cve5:birtech-information-technologies-industry-and-trade-ltd.-co.:sensaway:0:09022026"}],"exploit_refs":[],"news":[],"references":[{"url":"https://www.usom.gov.tr/bildirim/tr-26-0022","source_type":"MISC","tags":[]},{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0022","source_type":"MISC","tags":[]}],"timeline":[{"type":"published","at":"2026-02-09T12:57:37.050000Z","label":"CVE published","source":null},{"type":"cvss_changed","at":"2026-06-28T17:40:58.804819Z","label":"CVSS score revised","source":"cvelistv5"},{"type":"cvss_changed","at":"2026-06-28T17:40:58.804819Z","label":"CVSS score revised","source":"cvelistv5"},{"type":"cvss_changed","at":"2026-06-28T17:40:58.804819Z","label":"CVSS score revised","source":"cvelistv5"}]}