CVE-2025-0614 - CVE House
Back to Database
Status published Medium CVE-2025-0614

Input validation vulnerability in Qualifio's Wheel of Fortune

Vulnerability Description

Input validation vulnerability in Qualifio's Wheel of Fortune. This vulnerability could allow an attacker to modify a single email to contain upper and lower case characters in order to access the application and win prizes as many times as wanted.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-0614

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Aldayr Ruiz (xsmaky)

Affected Vendor

Affected Software

Wheel of fortune
Vulnerable Versions:
all versions

Timeline

Official Publish: January 21st, 2025
Last Modified: January 21st, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Weaknesses (CWE)