Security Advisory

CVE-2025-14780

6.3
MEDIUM

Vulnerability Description

A vulnerability was detected in Xiongwei Smart Catering Cloud Platform 2.1.6446.28761. The affected element is an unknown function of the file /dishtrade/dish_trade_detail_get. The manipulation of the argument filter results in sql injection. The attack can be executed remotely. The exploit is now public and may be used.
Published Date December 16, 2025
Official Source NIST NVD Advisory