An authenticated arbitrary file upload vulnerability in the Content Explorer feature of LogicData eCommerce Framework v5.0.9.7000 allows attackers to execute arbitrary code via uploading a crafted file.
References
Configurations
No configuration.
History
No history.
Information
Published : 2025-08-19 20:15
Updated : 2025-08-20 14:40
NVD link : CVE-2025-52337
Mitre link : CVE-2025-52337
CVE.ORG link : CVE-2025-52337
JSON object : View
Products Affected
No product.
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
