Vulnerabilities
Vulnerable Software
F-Logic:  >> Datacube3  >> 1.0  Security Vulnerabilities
F-logic DataCube3 Version 1.0 is affected by a reflected cross-site scripting (XSS) vulnerability due to improper input sanitization. An authenticated, remote attacker can execute arbitrary JavaScript code in the web management interface.
CVSS Score
5.4
EPSS Score
0.001
Published
2024-02-29
F-logic DataCube3 v1.0 is vulnerable to unrestricted file upload, which could allow an authenticated malicious actor to upload a file of dangerous type by manipulating the filename extension.
CVSS Score
8.8
EPSS Score
0.116
Published
2024-02-29
F-logic DataCube3 v1.0 is vulnerable to unauthenticated SQL injection, which could allow an unauthenticated malicious actor to execute arbitrary SQL queries in database.
CVSS Score
9.8
EPSS Score
0.002
Published
2024-02-29


Contact Us

Shodan ® - All rights reserved