CNNVD-202508-2213 Information

CNNVD ID

CNNVD-202508-2213

CVE-2025-52337

  • CNNVD Published: 2025-08-19

Description (Chinese)

LogicData eCommerce Framework是美国LogicData公司的一款电子商务中间件。 LogicData eCommerce Framework v5.0.9.7000版本存在安全漏洞,该漏洞源于Content Explorer功能存在经过身份验证的任意文件上传,可能导致执行任意代码。

Description (English)

LogicData eCommerce Framework is an e-commerce intermediary of the United States company LogicData. The LogicData eCommerce Framework v.5.0.9.7000 has a security loophole, which stems from the fact that there is an identity-verified, random document uploading that may result in the implementation of an arbitrary code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

LogicData

Published

2025-08-19

Last Modified

2026-02-24

References

https://cwe.mitre.org/data/definitions/434.html https://nvd.nist.gov/vuln/detail/CVE-2022-22947 https://github.com/TrustStackSecurity/Advisories/blob/main/CVE-2025-52337/README.md https://nvd.nist.gov/vuln/detail/CVE-2025-52337

Share on: