CVE-2025-52338 Information

Description

An issue in the default configuration of the password reset function in LogicData eCommerce Framework v5.0.9.7000 allows attackers to bypass authentication and compromise user accounts via a bruteforce attack.

Reference

https://cwe.mitre.org/data/definitions/521.html https://cwe.mitre.org/data/definitions/522.html https://github.com/TrustStackSecurity/Advisories/tree/main/CVE-2025-52338 https://www.logicdata.com/products/webstore-for-erp-ecommerce-integration/

CNNVD-202508-2202 (Published: 2025-08-19)

Share on: