8.1
/ 10
HIGH
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Description
Anviz CrossChex Standard
lacks source verification in the client/server channel, enabling TCP
packet injection by an attacker on the same network to alter or disrupt
application traffic.
lacks source verification in the client/server channel, enabling TCP
packet injection by an attacker on the same network to alter or disrupt
application traffic.
Basic Information
ID
CVE-2026-40434
Source
icscert
Published
Apr 17, 2026 at 19:49
Modified
Apr 17, 2026 at 20:28
Affected Product
Vendor
Anviz
Product
Anviz CrossChex Standard
Version
All versions
Affected Versions
Anviz Anviz CrossChex Standard All versions