CVE-2025-0614
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Jan 21, 2025
CWE ID 22
Summary
CVE-2025-0614 is an input validation vulnerability affecting Qualifio's Wheel of Fortune application. An attacker can manipulate email input by introducing a combination of upper and lower case characters, thereby bypassing the intended access restrictions. This issue allows unauthorized access and potential prize duplication for the attacker. The vulnerability could lead to significant financial loss or unwarranted rewards for the attacker. Qualifio is urged to address this issue promptly to prevent potential misuse.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.