PT-2025-3983 · Qualifio · Qualifio'S Wheel Of Fortune

Aldayr Ruiz

+1

·

Publicado

2025-01-21

·

Atualizado

2025-01-21

·

CVE-2025-0615

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
The Qualifio Wheel of Fortune application is affected by an input validation issue, allowing an attacker to modify an email address to include the '+' symbol and access the application to win prizes multiple times. The affected software is Qualifio's Wheel of Fortune, but the specific versions are not mentioned. An exploit for this issue is available, and it can be accessed through specific links, such as https://t.co/JevZ4tsr5f and https://t.co/DMgu3Xdwn9. The impact of this issue could be significant, potentially affecting a large number of users who participate in the Wheel of Fortune application. #Qualifio #WheelOfFortune #InputValidation #Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-0615

Produtos afetados

Qualifio'S Wheel Of Fortune