CVE-2019-20003: Dicube Easescreen Crystal

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

Feldtech easescreen Crystal 9.0 Web-Services 9.0.1.16265 allows Stored XSS via the Debug-Log and Display-Log components. This could be exploited when an attacker sends an crafted string for FTP authentication.

Affected products

  • Dicube Easescreen Crystal: version 9.0.1.16265 only

Published 2020-01-17. Last modified 2026-06-17.