CVE-2025-0615
Severity CVSS v4.0:
Pending analysis
Type:
CWE-22
Path Traversal
Publication date:
21/01/2025
Last modified:
21/01/2025
Description
Input validation vulnerability in Qualifio's Wheel of Fortune. This vulnerability allows an attacker to modify an email to contain the ‘+’ symbol to access the application and win prizes as many times as wanted.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM