VendorsF-logicdatacube31.0
Vulnerabilities

F-logic datacube3 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2024-25833
F-logic DataCube3 v1.0 is vulnerable to unauthenticated SQL injection, which could allow an unauthenticated malicious actor to execute arbitrary SQL queries in database.
Published 2024-02-28 · Analyzed
9.8EPSS 0.028
CVE-2024-25832
F-logic DataCube3 v1.0 is vulnerable to unrestricted file upload, which could allow an authenticated malicious actor to upload a file of dangerous type by manipulating the filename extension.
Published 2024-02-28 · Modified
8.81 PoCEPSS 0.128
CVE-2024-25831
F-logic DataCube3 Version 1.0 is affected by a reflected cross-site scripting (XSS) vulnerability due to improper input sanitization. An authenticated, remote attacker can execute arbitrary JavaScript code in the web management interface.
Published 2024-02-28 · Analyzed
6.1EPSS 0.006