Anviz CrossChex Standard
lacks source verification in the client/server channel, enabling TCP
packet injection by an attacker on the same network to alter or disrupt
application traffic.
Metrics
Affected Vendors & Products
References
History
Fri, 17 Apr 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 17 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Anviz CrossChex Standard lacks source verification in the client/server channel, enabling TCP packet injection by an attacker on the same network to alter or disrupt application traffic. | |
| Title | Anviz CrossChex Standard Improper Verification of Source of a Communication Channel | |
| Weaknesses | CWE-940 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-04-17T20:28:02.785Z
Reserved: 2026-04-14T15:42:14.096Z
Link: CVE-2026-40434
Updated: 2026-04-17T20:27:29.011Z
Status : Received
Published: 2026-04-17T20:16:36.083
Modified: 2026-04-17T20:16:36.083
Link: CVE-2026-40434
No data.
OpenCVE Enrichment
No data.