Description
F-logic DataCube3 v1.0 is vulnerable to unrestricted file upload, which could allow an authenticated malicious actor to upload a file of dangerous type by manipulating the filename extension.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Thu, 27 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
F-logic
F-logic datacube3 |
|
| Weaknesses | CWE-434 | |
| CPEs | cpe:2.3:h:f-logic:datacube3:-:*:*:*:*:*:*:* cpe:2.3:o:f-logic:datacube3:1.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
F-logic
F-logic datacube3 |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-27T14:27:50.024Z
Reserved: 2024-02-12T00:00:00.000Z
Link: CVE-2024-25832
Updated: 2024-08-01T23:52:05.719Z
Status : Modified
Published: 2024-02-29T01:44:16.713
Modified: 2025-03-27T15:15:50.607
Link: CVE-2024-25832
No data.
OpenCVE Enrichment
No data.
Weaknesses