CVE-2024-25832

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
29/02/2024
Last modified:
27/03/2025

Description

F-logic DataCube3 v1.0 is vulnerable to unrestricted file upload, which could allow an authenticated malicious actor to upload a file of dangerous type by manipulating the filename extension.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:f-logic:datacube3:1.0:*:*:*:*:*:*:*
cpe:2.3:h:f-logic:datacube3:-:*:*:*:*:*:*:*