Filtered by vendor Areal-topkapi Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-50357 1 Areal-topkapi 1 Webserv1 2024-02-15 5.4 Medium
A cross site scripting vulnerability in the AREAL SAS Websrv1 ASP website allows a remote low-privileged attacker to gain escalated privileges of other non-admin users.
CVE-2023-50356 1 Areal-topkapi 1 Vision Server 2024-02-15 6.5 Medium
SSL connections to some LDAP servers are vulnerable to a man-in-the-middle attack due to improper certificate validation in AREAL Topkapi Vision (Server). This allows a remote unauthenticated attacker to gather sensitive information and prevent valid users from login.