Vulnerabilities
3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2024-1104 | An unauthenticated remote attacker can bypass the brute force prevention mechanism and disturb the webservice for all users. An unauthenticated remote attacker can bypass the brute force prevention mechanism and disturb the webservice for all users. NVD description · AI analysis pending | 7.5 | <1% |
| — | ||
| CVE-2023-50357 | A cross site scripting vulnerability in the AREAL SAS Websrv1 ASP website allows a remote low-privileged attacker to gain escalated privileges of other non-admi A cross site scripting vulnerability in the AREAL SAS Websrv1 ASP website allows a remote low-privileged attacker to gain escalated privileges of other non-admin users. NVD description · AI analysis pending | 5.4 | <1% |
| — | ||
| CVE-2023-50356 | SSL connections to some LDAP servers are vulnerable to a man-in-the-middle attack due to improper certificate validation in AREAL Topkapi Vision (Server). SSL connections to some LDAP servers are vulnerable to a man-in-the-middle attack due to improper certificate validation in AREAL Topkapi Vision (Server). This allows a remote unauthenticated attacker to gather sensitive information and prevent valid users from login. NVD description · AI analysis pending | 6.5 | <1% |
| — |