The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_KEYS_FIELDS, allowing for an unauthenticated attacker to return the keys value of any user
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-04-15 00:15
Updated : 2024-04-15 13:15
NVD link : CVE-2024-29841
Mitre link : CVE-2024-29841
CVE.ORG link : CVE-2024-29841
JSON object : View
Products Affected
No product.