Input validation vulnerability in Qualifio's Wheel of Fortune. This vulnerability allows an attacker to modify an email to contain the ‘+’ symbol to access the application and win prizes as many times as wanted.
No PoCs from references.
- https://github.com/fkie-cad/nvd-json-data-feeds