HTTP headers are added by the default configuration of IIS and ASP.net, and are not removed at the deployment phase of the webservices used by the WebVue, WebScheduler, TouchVue and SnapVue features of PcVue in version 12.0.0 through 16.3.3 included. It unnecessarily exposes sensitive information about the server configuration.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.pcvue.com/security/#SB2026-2 |
|
History
Thu, 26 Feb 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HTTP headers are added by the default configuration of IIS and ASP.net, and are not removed at the deployment phase of the webservices used by the WebVue, WebScheduler, TouchVue and SnapVue features of PcVue in version 12.0.0 through 16.3.3 included. It unnecessarily exposes sensitive information about the server configuration. | |
| Title | Server configuration details in HTTP headers | |
| First Time appeared |
Arcinfo
Arcinfo pcvue |
|
| Weaknesses | CWE-201 | |
| CPEs | cpe:2.3:a:arcinfo:pcvue:*:*:*:*:*:*:*:* cpe:2.3:a:arcinfo:pcvue:12.0.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Arcinfo
Arcinfo pcvue |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: arcinfo
Published:
Updated: 2026-02-26T07:56:57.048Z
Reserved: 2026-01-30T08:37:56.659Z
Link: CVE-2026-1694
No data.
Status : Received
Published: 2026-02-26T08:16:18.763
Modified: 2026-02-26T08:16:18.763
Link: CVE-2026-1694
No data.
OpenCVE Enrichment
No data.