Metrics
Affected Vendors & Products
Fri, 07 Nov 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:logicaldoc:logicaldoc:*:*:*:*:community:*:*:* |
Mon, 03 Nov 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Logicaldoc
Logicaldoc logicaldoc |
|
| Vendors & Products |
Logicaldoc
Logicaldoc logicaldoc |
Fri, 31 Oct 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 31 Oct 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in LogicalDOC Community Edition up to 9.2.1. This affects an unknown part of the component API Key creation UI. This manipulation causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | LogicalDOC Community Edition API Key creation UI cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-31T18:32:05.885Z
Updated: 2025-10-31T18:59:31.730Z
Reserved: 2025-10-31T13:10:09.009Z
Link: CVE-2025-12546
Updated: 2025-10-31T18:59:00.560Z
Status : Analyzed
Published: 2025-10-31T19:15:49.380
Modified: 2025-11-07T01:30:56.277
Link: CVE-2025-12546
No data.