Server-Side Request Forgery in FWDesign Ultimate Video Player
CVE-2025-49430
7.2HIGH
What is CVE-2025-49430?
The FWDesign Ultimate Video Player is susceptible to a Server-Side Request Forgery (SSRF) vulnerability. This flaw allows attackers to send unauthorized requests from the server to other internal or external systems. By exploiting this weakness, malicious entities can access sensitive information, manipulate server resources, or even trigger unwanted actions on behalf of the server. Users of Ultimate Video Player versions from n/a through 10.1 are urged to implement necessary security measures to mitigate this risk.
Affected Version(s)
Ultimate Video Player <= 10.1