CVE-2024-29838
15.04.2024, 00:15
The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below does not proper sanitize user input, allowing for an unauthenticated attacker to crash the controller softwareEnginsight
| Vendor | Product | Version |
|---|---|---|
| cs-technologies | evolution | 𝑥 ≤ 2.04.560 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-20 - Improper Input ValidationThe product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
- CWE-908 - Use of Uninitialized ResourceThe software uses or accesses a resource that has not been initialized.