Description
The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_PIN_FIELDS, allowing for an unauthenticated attacker to return the pin value of any user
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26832 | The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_PIN_FIELDS, allowing for an unauthenticated attacker to return the pin value of any user |
References
History
Wed, 10 Dec 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cs-technologies
Cs-technologies evolution |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:cs-technologies:evolution:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Cs-technologies
Cs-technologies evolution |
Status: PUBLISHED
Assigner: directcyber
Published:
Updated: 2024-08-02T01:17:58.069Z
Reserved: 2024-03-21T00:52:45.515Z
Link: CVE-2024-29840
Updated: 2024-08-02T01:17:58.069Z
Status : Analyzed
Published: 2024-04-15T00:15:13.753
Modified: 2025-12-10T17:38:15.083
Link: CVE-2024-29840
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD