CVE-2025-49089
—CVSS 3.1
6.3 medium
EPSS
<1%p24
Published
()
Modified
Description
wangxutech MoneyPrinterTurbo 1.2.6 allows path traversal via /api/v1/download/ URIs such as /api/v1/download//etc/passwd.
- Vendors
- harry0703
- Products
- moneyprinterturbo
- Weakness
- CWE-22
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
In the news0 stories
No ingested article mentions this CVE yet.