CVE-2025-49089
15.09.2025, 17:15
wangxutech MoneyPrinterTurbo 1.2.6 allows path traversal via /api/v1/download/ URIs such as /api/v1/download//etc/passwd.
| Vendor | Product | Version | 
|---|---|---|
| harry0703 | moneyprinterturbo | 1.2.6 | 
𝑥
= Vulnerable software versions
wangxutech MoneyPrinterTurbo 1.2.6 allows path traversal via /api/v1/download/ URIs such as /api/v1/download//etc/passwd.
| Vendor | Product | Version | 
|---|---|---|
| harry0703 | moneyprinterturbo | 1.2.6 |