Back to search
CVE-2024-5539
Published: Nov 27, 2025
Modified: Nov 28, 2025
PUBLISHED
Description
The Access Control Bypass vulnerability found in ALC WebCTRL and Carrier i-Vu in versions up to and including 8.5 allows a malicious actor to bypass intended access restrictions and expose sensitive information via the web based building automation server.
| Vendor | Product | Versions |
|---|---|---|
Automated Logic | WebCTRL | affected 0 - <= 8.5 |
Carrier | i-Vu | affected 0 - <= 8.5 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now