CVE-2025-11675: Ragic|Enterprise Cloud Database - Arbitrary File Upload
Published Oct 13, 2025
·Updated
Enterprise Cloud Database developed by Ragic has an Arbitrary File Upload vulnerability, allowing privileged remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.
Affected Software
1 affected component
Ragic Enterprise Cloud Database
Remediation
Information
Please install the patch with version 2025/09/12 12:55:15 or later
Event History
Oct 13, 2025
CVE Published
via MITRE·07:56 AM
Data Sourced
via MITRE·07:56 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-11675?
CVE-2025-11675 has been rated as critical due to its potential for arbitrary code execution.
2
How do I fix CVE-2025-11675?
To fix CVE-2025-11675, update Ragic Enterprise Cloud Database to the latest version that addresses this vulnerability.
3
What impact does CVE-2025-11675 have on affected systems?
CVE-2025-11675 allows remote attackers to upload malicious files, resulting in the execution of arbitrary code on the server.
4
Which software is affected by CVE-2025-11675?
CVE-2025-11675 specifically affects the Ragic Enterprise Cloud Database.
5
Can CVE-2025-11675 be exploited without authentication?
Yes, CVE-2025-11675 can be exploited by privileged remote attackers without being authenticated.