CVE-2025-34183: Ilevia Eve x1 Server Firmware
High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.
Ilevia EVE X1 Server version ≤ 4.7.18.0.eden contains a vulnerability in its server-side logging mechanism that allows unauthenticated remote attackers to retrieve plaintext credentials from exposed .log files. This flaw enables full authentication bypass and system compromise through credential reuse.
Affected products
- Ilevia Eve x1 Server Firmware: up to and including 4.7.18.0
Published 2025-09-16. Last modified 2026-06-17.