CVE-2025-0614

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Jan 21, 2025
CWE ID 22

Summary

CVE-2025-0614 is an input validation vulnerability affecting Qualifio's Wheel of Fortune application. An attacker can manipulate email input by introducing a combination of upper and lower case characters, thereby bypassing the intended access restrictions. This issue allows unauthorized access and potential prize duplication for the attacker. The vulnerability could lead to significant financial loss or unwarranted rewards for the attacker. Qualifio is urged to address this issue promptly to prevent potential misuse.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share