---
id: CVE-2025-45870
title: >-
  LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to Local File
  Inclusion (LFI) in the OnlyOfficeEditor servlet class, allowing authenticated
  user to exploit path traversal flaws in the fileExt parameter, enabling
  unauthorized acc…
summary: >-
  LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to Local File
  Inclusion (LFI) in the OnlyOfficeEditor servlet class, allowing authenticated
  user to exploit path traversal flaws in the fileExt parameter, enabling
  unauthorized acc…
severity: medium
cvss: 6.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-22
published: '2026-07-16'
updated: '2026-10-05'
sourceUpdated: '2026-10-05T18:10:00.200'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-45870'
references:
  - url: >-
      https://github.com/netero1010/Vulnerability-Disclosure/blob/main/CVE-2025-45870/README.md
    label: cve@mitre.org
  - url: 'https://www.logicaldoc.com/'
    label: cve@mitre.org
tags:
  - nvd
epss: 0.00489
epssPercentile: 0.39916
ingestedAt: '2026-10-05T18:29:11.172Z'
---

## Overview

LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to Local File Inclusion (LFI) in the OnlyOfficeEditor servlet class, allowing authenticated user to exploit path traversal flaws in the fileExt parameter, enabling unauthorized access to sensitive files outside the designated directories.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
