← Volver a CVEs
CVE-2026-30280
MEDIUM5.3
Descripcion
An arbitrary file overwrite vulnerability in RAREPROB SOLUTIONS PRIVATE LIMITED Video player Play All Videos v1.0.135 allows attackers to overwrite critical internal files via the file import process, leading to arbtrary code execution or information exposure.
Detalles CVE
Puntuacion CVSS v3.15.3
SeveridadMEDIUM
Vector CVSSCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Vector de ataqueLOCAL
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioREQUIRED
Publicado3/31/2026
Ultima modificacion4/2/2026
Fuentenvd
Avistamientos honeypot0
Productos afectados
rareprob:video_player
Debilidades (CWE)
CWE-434
Referencias
https://github.com/Secsys-FDU/AF_CVEs/issues/29(cve@mitre.org)
https://rareprob-website.firebaseapp.com/(cve@mitre.org)
https://secsys.fudan.edu.cn/(cve@mitre.org)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.