CVE-2024-29838
EUVD-2024-2683015.04.2024, 00:15
The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below does not proper sanitize user input, allowing for an unauthenticated attacker to crash the controller softwareEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cs-technologies | evolution | 𝑥 ≤ 2.04.560 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-20 - Improper Input ValidationThe product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
- CWE-908 - Use of Uninitialized ResourceThe software uses or accesses a resource that has not been initialized.