Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26834 | The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_ABACARD_FIELDS, allowing for an unauthenticated attacker to return the abacard field of any user |
Wed, 10 Dec 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cs-technologies
Cs-technologies evolution |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:cs-technologies:evolution:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Cs-technologies
Cs-technologies evolution |
Status: PUBLISHED
Assigner: directcyber
Published:
Updated: 2024-08-02T01:17:57.926Z
Reserved: 2024-03-21T00:52:45.515Z
Link: CVE-2024-29842
Updated: 2024-08-02T01:17:57.926Z
Status : Analyzed
Published: 2024-04-15T00:15:14.167
Modified: 2026-06-17T07:23:13.400
Link: CVE-2024-29842
No data.
OpenCVE Enrichment
No data.
-
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
-
CWE-284
Improper Access Control
- NVD-CWE-Other
EUVD