Loading vulnerability details…
CVSS v3.1
2.9
EPSS
0.17%
Published
Oct 7, 2025
Modified
Oct 10, 2025
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
In Ankitects Anki before 25.02.6, crafted sound file references could cause files to be written to arbitrary locations on Windows and Linux (media file pathnames are not necessarily relative to the media folder).
CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:NWeaknesses (CWE)
Affected Products (1)
References (3)