CVE-2024-25831: F-Logic DATACUBE3

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

F-logic DataCube3 Version 1.0 is affected by a reflected cross-site scripting (XSS) vulnerability due to improper input sanitization. An authenticated, remote attacker can execute arbitrary JavaScript code in the web management interface.

Affected products

  • F-Logic DATACUBE3: version 1.0 only

Published 2024-02-29. Last modified 2026-06-17.