F-logic DataCube3 Version 1.0 is affected by a reflected cross-site scripting (XSS) vulnerability due to improper input sanitization. An authenticated, remote attacker can execute arbitrary JavaScript code in the web management interface.
Metrics
Affected Vendors & Products
References
History
Thu, 16 Jan 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
F-logic
F-logic datacube3 |
|
CPEs | cpe:2.3:h:f-logic:datacube3:-:*:*:*:*:*:*:* cpe:2.3:o:f-logic:datacube3:1.0:*:*:*:*:*:*:* |
|
Vendors & Products |
F-logic
F-logic datacube3 |
|
Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 20 Aug 2024 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-20T19:45:49.316Z
Reserved: 2024-02-12T00:00:00
Link: CVE-2024-25831

Updated: 2024-08-01T23:52:06.010Z

Status : Analyzed
Published: 2024-02-29T01:44:16.630
Modified: 2025-01-16T17:50:46.660
Link: CVE-2024-25831

No data.