Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26832 | The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_PIN_FIELDS, allowing for an unauthenticated attacker to return the pin value of any user |
Wed, 10 Dec 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cs-technologies
Cs-technologies evolution |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:cs-technologies:evolution:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Cs-technologies
Cs-technologies evolution |
Status: PUBLISHED
Assigner: directcyber
Published:
Updated: 2024-08-02T01:17:58.069Z
Reserved: 2024-03-21T00:52:45.515Z
Link: CVE-2024-29840
Updated: 2024-08-02T01:17:58.069Z
Status : Analyzed
Published: 2024-04-15T00:15:13.753
Modified: 2026-06-17T07:23:13.170
Link: CVE-2024-29840
No data.
OpenCVE Enrichment
No data.
-
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
-
CWE-284
Improper Access Control
- NVD-CWE-Other
EUVD