CS Technologies maintains a narrowly focused vulnerability footprint centered on its Evolution product line. Despite modest volume, the vendor appears in the landscape's upper tier, suggesting concentrated deployment within its target user base. Current vulnerability counts, severity distribution, and exploitation status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cs Technologies over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-29844CRITICAL Default credentials on the Web Interface of Evolution Controller 2.x allows anyone to log in to the server directly to perform administrative functions. Upon installation or upon f | Apr 15, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-29836CRITICAL The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control, allowing for an unauthenticated attacker to update and a | Apr 15, 2024 | 9.8 | 26 | NO | NO |
CVE-2024-29837HIGH The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below uses poor session management, allowing for an unauthenticated attacker to access administrator func | Apr 15, 2024 | 8.8 | 24 | NO | NO |
CVE-2024-29843HIGH The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on MOBILE_GET_USERS_LIST, allowing for an unauthenticated | Apr 15, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-29842HIGH The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_ABACARD_FIELDS, allowing for an | Apr 15, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-29841HIGH The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_KEYS_FIELDS, allowing for an una | Apr 15, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-29840HIGH The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_PIN_FIELDS, allowing for an unau | Apr 15, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-29838HIGH The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below does not proper sanitize user input, allowing for an unauthenticated attacker to crash the control | Apr 15, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-29839HIGH The Web interface of Evolution Controller Versions 2.04.560.31.03.2024 and below contains poorly configured access control on DESKTOP_EDIT_USER_GET_CARD, allowing for an unauthenti | Apr 15, 2024 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cs Technologies.
Media articles that mention a CVE ID that affects a product developed by Cs Technologies — matched by CVE ID, not by vendor name.