CVE-2025-67325
EUVD-2026-143908.01.2026, 19:15
Unrestricted file upload in the hotel review feature in QloApps versions 1.7.0 and earlier allows remote unauthenticated attackers to achieve remote code execution.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| webkul | qloapps | 𝑥 ≤ 1.7.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration