Metrics
Affected Vendors & Products
Mon, 20 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Harry0703
Harry0703 moneyprinterturbo |
|
| Vendors & Products |
Harry0703
Harry0703 moneyprinterturbo |
Tue, 14 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 11 Oct 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in harry0703 MoneyPrinterTurbo up to 1.2.6. The impacted element is the function upload_music of the file app/controllers/v1/music.py of the component API Endpoint. Executing manipulation of the argument File can lead to path traversal. The attack may be performed from remote. The exploit has been made available to the public and could be exploited. | |
| Title | harry0703 MoneyPrinterTurbo API Endpoint music.py upload_music path traversal | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-11T16:32:05.833Z
Updated: 2025-10-14T14:54:37.776Z
Reserved: 2025-10-10T13:35:53.554Z
Link: CVE-2025-11607
Updated: 2025-10-14T14:48:44.052Z
Status : Awaiting Analysis
Published: 2025-10-11T17:15:37.513
Modified: 2025-10-14T19:36:59.730
Link: CVE-2025-11607
No data.