PT-2025-54227 · Inmusic Brands · Engine Dj

Brad Isbell

·

Published

2025-12-30

·

Updated

2026-01-05

·

CVE-2025-66723

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions inMusic Brands Engine DJ version 4.3.0
Description Engine DJ version 4.3.0 is affected by an issue with insecure permissions. An exposed HTTP service within the Remote Library feature allows attackers to access all files and network paths.
Recommendations Update to a newer version that contains a fix for this vulnerability.

Exploit

Fix

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2025-66723

Affected Products

Engine Dj