PT-2025-3983 · Qualifio · Qualifio'S Wheel Of Fortune

Aldayr Ruiz

+1

·

Published

2025-01-21

·

Updated

2025-01-21

·

CVE-2025-0615

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
The Qualifio Wheel of Fortune application is affected by an input validation issue, allowing an attacker to modify an email address to include the '+' symbol and access the application to win prizes multiple times. The affected software is Qualifio's Wheel of Fortune, but the specific versions are not mentioned. An exploit for this issue is available, and it can be accessed through specific links, such as https://t.co/JevZ4tsr5f and https://t.co/DMgu3Xdwn9. The impact of this issue could be significant, potentially affecting a large number of users who participate in the Wheel of Fortune application. #Qualifio #WheelOfFortune #InputValidation #Exploit

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2025-0615

Affected Products

Qualifio'S Wheel Of Fortune