Go To
EOL Notice

eVue NMS Notice

Date: 1/09/26

Dear Valued EtherWAN Customer,

EtherWAN has become aware of a critical issue regarding the database program (MongoDB 5.0.2) used by eVue version 5. This issue (CVE-2025-14847) could potentially allow attackers to execute arbitrary code and potentially gain control of targeted devices in some cases, where the eVue server is connected to the Internet. This issue assumes that the eVue server is public-facing.


Mitigation

This issue can be mitigated by upgrading the MongoDB install to version 5.0.32 (click here to visit their download page). This will however result in the information tab on the details page being rendered unusable. Topology display and dashboard view are unaffected.


Resolution

An updated version will be made available in the coming weeks to resolve the issue.


Please contact us at [email protected] if you have any questions. We apologize for any inconvenience and appreciate your continued support.