CVE-2025-45868 HIGH

LogicalDOC Enterprise up to and for v9
Generated: 10 Oct 2026 19:56 • CVE Threat Intelligence

Description

LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to blind SQL injection in the ComparisonServlet component, allowing authenticated user to manipulate SQL queries via crafted input.

8.8
CVSS HIGH

Details

Published
16 Jul 2026 16:18
Modified
20 Jul 2026 17:17
Source
CIRCL

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

References