216.73.216.133

CVE-2025-8991

· Published 15/08/2025 01:16 · Modified 15/08/2025 13:12

Labels: CVE-2025-8991 2025-08-15CVE-2025-8991CWE-840[email protected]

Essential information

Published
15/08/2025 01:16
Modified
15/08/2025 13:12
Author
Creator
CVSS
5.3 MEDIUM (v3) 5.3 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability was identified in linlinjava litemall up to 1.8.0. Affected by this vulnerability is an unknown functionality of the file /admin/config/express of the component Business Logic Handler. The manipulation of the argument litemall_express_freight_min leads to business logic errors. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
linlinjava / litemall cpe:2.3:a:linlinjava:litemall:*:*:*:*:*:*:*:*

References