Home
HIGH: 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
All versions
affected
Description
Anviz CrossChex Standard is vulnerable when an attacker manipulates the TDS7 PreLogin to disable encryption, causing database credentials to be sent in plaintext and enabling unauthorized database access.
Problem types
Product status
All versions
References
www.cisa.gov/news-events/ics-advisories/icsa-26-106-03
github.com/...p/csaf_files/OT/white/2026/icsa-26-106-03.json