CVE-2026-30280
Received
Received - Intake
Arbitrary File Overwrite in RAREPROB Video Player Enables Code Execution
Publication date: 2026-03-31
Last updated on: 2026-04-02
Assigner: MITRE
Description
Description
An arbitrary file overwrite vulnerability in RAREPROB SOLUTIONS PRIVATE LIMITED Video player Play All Videos v1.0.135 allows attackers to overwrite critical internal files via the file import process, leading to arbtrary code execution or information exposure.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| rareprob | video_player | 1.0.135 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-434 | The product allows the upload or transfer of dangerous file types that are automatically processed within its environment. |