CVE Database
/

CVE-2024-7205

Back to search

CVE-2024-7205

Published: Jul 31, 2024

Modified: Jul 31, 2024

PUBLISHED

Description

When the device is shared, the homepage module are before 2.19.0  in eWeLink Cloud Service allows Secondary user to take over devices as primary user via sharing unnecessary device-sensitive information.

VendorProductVersions

CoolKit

eWeLink Cloud Service

affected
2.0.0 - < 2.19.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now