PT-2025-5402 · Dualcube · Dualcube Moowoodle

Joshua Chan

·

Published

2025-02-03

·

Updated

2025-02-03

·

CVE-2025-24556

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions DualCube MooWoodle versions n/a through 3.2.4
Description The issue allows the retrieval of embedded sensitive data due to the insertion of sensitive information into the log file. This problem affects DualCube MooWoodle, enabling the exposure of confidential data.
Recommendations For versions n/a through 3.2.4, update to a version later than 3.2.4 to resolve the issue. As a temporary workaround, consider restricting access to the log file to minimize the risk of exploitation.

Fix

Insertion into Log File

Weakness Enumeration

Related Identifiers

CVE-2025-24556

Affected Products

Dualcube Moowoodle