PT-2025-3983 · Qualifio · Qualifio'S Wheel Of Fortune
Aldayr Ruiz
+1
·
Published
2025-01-21
·
Updated
2025-01-21
·
CVE-2025-0615
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
The Qualifio Wheel of Fortune application is affected by an input validation issue, allowing an attacker to modify an email address to include the '+' symbol and access the application to win prizes multiple times.
The affected software is Qualifio's Wheel of Fortune, but the specific versions are not mentioned.
An exploit for this issue is available, and it can be accessed through specific links, such as https://t.co/JevZ4tsr5f and https://t.co/DMgu3Xdwn9.
The impact of this issue could be significant, potentially affecting a large number of users who participate in the Wheel of Fortune application.
#Qualifio #WheelOfFortune #InputValidation #Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Qualifio'S Wheel Of Fortune