Description
The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on MOBILE_GET_USERS_LIST, allowing for an unauthenticated attacker to enumerate all users and their access levels
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26835 | The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on MOBILE_GET_USERS_LIST, allowing for an unauthenticated attacker to enumerate all users and their access levels |
References
History
Wed, 10 Dec 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cs-technologies
Cs-technologies evolution |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:cs-technologies:evolution:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Cs-technologies
Cs-technologies evolution |
Status: PUBLISHED
Assigner: directcyber
Published:
Updated: 2024-08-02T01:17:57.993Z
Reserved: 2024-03-21T00:52:45.515Z
Link: CVE-2024-29843
Updated: 2024-08-02T01:17:57.993Z
Status : Analyzed
Published: 2024-04-15T00:15:14.373
Modified: 2025-12-10T17:38:48.523
Link: CVE-2024-29843
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD