PT-2025-3983 · Qualifio · Qualifio'S Wheel Of Fortune
Aldayr Ruiz
+1
·
Publicado
2025-01-21
·
Atualizado
2025-01-21
·
CVE-2025-0615
CVSS v3.1
5.3
Média
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
The Qualifio Wheel of Fortune application is affected by an input validation issue, allowing an attacker to modify an email address to include the '+' symbol and access the application to win prizes multiple times.
The affected software is Qualifio's Wheel of Fortune, but the specific versions are not mentioned.
An exploit for this issue is available, and it can be accessed through specific links, such as https://t.co/JevZ4tsr5f and https://t.co/DMgu3Xdwn9.
The impact of this issue could be significant, potentially affecting a large number of users who participate in the Wheel of Fortune application.
#Qualifio #WheelOfFortune #InputValidation #Exploit
Correção
Path traversal
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Qualifio'S Wheel Of Fortune