PT-2025-54227 · Inmusic Brands · Engine Dj

·

CVE-2025-66723

·

Published

2025-12-30

·

Updated

2026-01-05

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions inMusic Brands Engine DJ version 4.3.0
Description Engine DJ version 4.3.0 is affected by an issue with insecure permissions. An exposed HTTP service within the Remote Library feature allows attackers to access all files and network paths.
Recommendations Update to a newer version that contains a fix for this vulnerability.

Exploit

Fix

Incorrect Permission

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-66723

Affected Products

Engine Dj