Vulnerabilities (CVE)

Filtered by vendor Anviz Subscribe
Filtered by product Crosschex Standard
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-40434 1 Anviz 1 Crosschex Standard 2026-06-17 N/A 8.1 HIGH
Anviz CrossChex Standard lacks source verification in the client/server channel, enabling TCP packet injection by an attacker on the same network to alter or disrupt application traffic.
CVE-2026-32650 1 Anviz 1 Crosschex Standard 2026-06-17 N/A 7.5 HIGH
Anviz CrossChex Standard is vulnerable when an attacker manipulates the TDS7 PreLogin to disable encryption, causing database credentials to be sent in plaintext and enabling unauthorized database access.