F-logic DataCube3 Version 1.0 is affected by a reflected cross-site scripting (XSS) vulnerability due to improper input sanitization. An authenticated, remote attacker can execute arbitrary JavaScript code in the web management interface.
Metrics
Affected Vendors & Products
References
History
Thu, 16 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
F-logic
F-logic datacube3 |
|
| CPEs | cpe:2.3:h:f-logic:datacube3:-:*:*:*:*:*:*:* cpe:2.3:o:f-logic:datacube3:1.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
F-logic
F-logic datacube3 |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 20 Aug 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-20T19:45:49.316Z
Reserved: 2024-02-12T00:00:00
Link: CVE-2024-25831
Updated: 2024-08-01T23:52:06.010Z
Status : Analyzed
Published: 2024-02-29T01:44:16.630
Modified: 2025-01-16T17:50:46.660
Link: CVE-2024-25831
No data.