PT-2026-21934 · Asbplayer · Asbplayer

Published

2026-02-25

·

Updated

2026-03-02

·

CVE-2025-69771

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions asbplayer version 1.13.0
Description An arbitrary file upload issue exists in the subtitle loading function. Successful exploitation allows attackers to execute arbitrary code by uploading a specially crafted subtitle file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2025-69771

Affected Products

Asbplayer