CNNVD-202512-4901 Information

CNNVD ID

CNNVD-202512-4901

CVE-2025-15116

  • CNNVD Published: 2025-12-28

Description (Chinese)

OpenCart是中国OpenCart团队的一套开源的电子商务系统。该系统提供产品评论、产品评分、产品添加等模块。 OpenCart 4.1.0.3及之前版本存在竞争条件问题漏洞,该漏洞源于竞争条件,可能导致远程攻击。

Description (English)

OpenCart is an open-source e-commerce system for the OpenCart team in China. The system provides modules such as product reviews, product ratings, product additions, etc. OpenCart 4.1.1.3 and previous versions have a loophole in competition conditions, which stems from competitive conditions and may lead to long-range attacks.

Hazard Level

Critical

Vulnerability Type

竞争条件问题

Affected Vendor

OpenCart

Published

2025-12-28

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.338494 https://gist.github.com/KhanMarshaI/a55f125a55de1c0d4f41e66236027e01 https://vuldb.com/?id.338494 https://vuldb.com/?submit.711745 https://gist.github.com/KhanMarshaI/a55f125a55de1c0d4f41e66236027e01#steps-to-reproduce https://access.redhat.com/security/cve/cve-2025-15116

Share on: