PT-2025-30203 · Harry0703 · Moneyprinterturbo

·

CVE-2025-7896

·

Published

2025-07-20

·

Updated

2025-07-20

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions harry0703 MoneyPrinterTurbo versions through 1.2.6
Description A critical vulnerability exists in harry0703 MoneyPrinterTurbo. The issue is a path traversal vulnerability affecting the download video/delete video function within the app/controllers/v1/video.py file. This allows for remote exploitation.
Recommendations harry0703 MoneyPrinterTurbo versions prior to 1.2.6: As a temporary workaround, consider restricting access to the download video and delete video functions until a patch is available.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-7896

Affected Products

Moneyprinterturbo