CVE-2024-25831: F-Logic DATACUBE3
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
F-logic DataCube3 Version 1.0 is affected by a reflected cross-site scripting (XSS) vulnerability due to improper input sanitization. An authenticated, remote attacker can execute arbitrary JavaScript code in the web management interface.
Affected products
- F-Logic DATACUBE3: version 1.0 only
Published 2024-02-29. Last modified 2026-06-17.