Ilevia EVE X1 Server version ≤ 4.7.18.0.eden contains a vulnerability in its server-side logging mechanism that allows unauthenticated remote attackers to retrieve plaintext credentials from exposed .log files. This flaw enables full authentication bypass and system compromise through credential reuse.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 16 Sep 2025 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Ilevia EVE X1 Server version ≤ 4.7.18.0.eden contains a vulnerability in its server-side logging mechanism that allows unauthenticated remote attackers to retrieve plaintext credentials from exposed .log files. This flaw enables full authentication bypass and system compromise through credential reuse. | |
Title | Ilevia EVE X1 Server 4.7.18.0.eden Credentials Leak Through Log Disclosure | |
Weaknesses | CWE-532 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-09-16T19:40:27.863Z
Reserved: 2025-04-15T19:15:22.568Z
Link: CVE-2025-34183

No data.

Status : Received
Published: 2025-09-16T20:15:34.287
Modified: 2025-09-16T20:15:34.287
Link: CVE-2025-34183

No data.

No data.