PatchSiren

TUBITAK BILGEM Software Technologies Research Institute CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH TUBITAK BILGEM Software Technologies Research Institute CVE published 2026-04-29

CVE-2026-6849

CVE-2026-6849 is a HIGH-severity vulnerability (CVSS Score: 8.8) affecting TUBITAK BILGEM Software Technologies Research Institute Pardus OS My Computer versions <=0.7.5 before 0.8.0. The vulnerability is caused by improper neutralization of special elements used in an OS command, allowing for OS command injection. The CVE was published on [cvePublishedAt] and last modified on [cveModifiedAt].

CRITICAL TUBITAK BILGEM Software Technologies Research Institute CVE published 2026-04-29

CVE-2026-5166

A Path Traversal vulnerability was discovered in Pardus Software Center, affecting versions before 0.6.4. This issue allows attackers to traverse directories, potentially leading to unauthorized access and data breaches.

HIGH TUBITAK BILGEM Software Technologies Research Institute CVE published 2026-04-29

CVE-2026-5141

CVE-2026-5141 is a HIGH-severity vulnerability (CVSS Score: 8.8) affecting TUBITAK BILGEM Software Technologies Research Institute Pardus Software Center versions from 1.0.2 to before 1.0.3. This vulnerability involves Improper Privilege Management, Improper Access Control, and Incorrect privilege assignment, allowing for the hijacking of a privileged process.

HIGH TUBITAK BILGEM Software Technologies Research Institute CVE published 2026-03-10

CVE-2026-2339

CVE-2026-2339 is a high-severity vulnerability in TUBITAK BILGEM Software Technologies Research Institute Liderahenk. The vulnerability has a CVSS score of 7.5 and is classified as a Missing Authentication for Critical Function issue. This vulnerability allows for Remote Code Inclusion, Privilege Abuse, and Command Injection. The affected version is Liderahenk before 3.5.1.

MEDIUM TUBITAK BILGEM Software Technologies Research Institute CVE published 2026-02-17

CVE-2025-7706

A Missing Authentication for Critical Function vulnerability in TUBITAK BILGEM Software Technologies Research Institute Liderahenk allows Remote Code Inclusion. This issue affects Liderahenk: from 3.0.0 to 3.3.1 before 3.5.0. The CVSS score for this vulnerability is 6.1, with a severity rating of MEDIUM.