Arbitrary File Upload Vulnerability in Ragic's Enterprise Cloud Database
CVE-2025-11675

8.6HIGH

Key Information:

Vendor

Ragic

Vendor
CVE Published:
13 October 2025

What is CVE-2025-11675?

Ragic's Enterprise Cloud Database is susceptible to an arbitrary file upload vulnerability that allows authenticated remote attackers to upload malicious files to the server. This flaw could enable attackers to execute web shell backdoors, leading to unauthorized access and control over the affected server. Remediation should be prioritized to prevent exploitation of this vulnerability by ensuring that all user-uploaded files are properly validated and sanitized.

Affected Version(s)

Enterprise Cloud Database 0

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-11675 : Arbitrary File Upload Vulnerability in Ragic's Enterprise Cloud Database