Vulnerabilities (CVE)

Filtered by vendor Areal-topkapi Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-50357 1 Areal-topkapi 1 Webserv1 2024-02-15 N/A 5.4 MEDIUM
A cross site scripting vulnerability in the AREAL SAS Websrv1 ASP website allows a remote low-privileged attacker to gain escalated privileges of other non-admin users.
CVE-2023-50356 1 Areal-topkapi 1 Vision Server 2024-02-15 N/A 6.5 MEDIUM
SSL connections to some LDAP servers are vulnerable to a man-in-the-middle attack due to improper certificate validation in AREAL Topkapi Vision (Server). This allows a remote unauthenticated attacker to gather sensitive information and prevent valid users from login.