Filtered by vendor Areal-topkapi
Subscribe
Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-50357 | 1 Areal-topkapi | 1 Webserv1 | 2024-11-21 | N/A | 5.4 MEDIUM |
A cross site scripting vulnerability in the AREAL SAS Websrv1 ASP website allows a remote low-privileged attacker to gain escalated privileges of other non-admin users. | |||||
CVE-2023-50356 | 1 Areal-topkapi | 1 Vision Server | 2024-11-21 | N/A | 6.5 MEDIUM |
SSL connections to some LDAP servers are vulnerable to a man-in-the-middle attack due to improper certificate validation in AREAL Topkapi Vision (Server). This allows a remote unauthenticated attacker to gather sensitive information and prevent valid users from login. |