CVE-2026-32650

Anviz CrossChex Standard is vulnerable when an attacker manipulates the TDS7 PreLogin to disable encryption, causing database credentials to be sent in plaintext and enabling unauthorized database access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:anviz:crosschex_standard:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-17 20:16

Updated : 2026-06-17 10:36


NVD link : CVE-2026-32650

Mitre link : CVE-2026-32650

CVE.ORG link : CVE-2026-32650


JSON object : View

Products Affected

anviz

  • crosschex_standard
CWE
CWE-757

Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade')