Anviz CrossChex Standard is vulnerable when an attacker manipulates the TDS7 PreLogin to disable
encryption, causing database credentials to be sent in plaintext and
enabling unauthorized database access.
Metrics
Affected Vendors & Products
References
History
Mon, 20 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Anviz
Anviz anviz Crosschex Standard |
|
| Vendors & Products |
Anviz
Anviz anviz Crosschex Standard |
Fri, 17 Apr 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 17 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Anviz CrossChex Standard is vulnerable when an attacker manipulates the TDS7 PreLogin to disable encryption, causing database credentials to be sent in plaintext and enabling unauthorized database access. | |
| Title | Anviz CrossChex Standard Algorithm Downgrade | |
| Weaknesses | CWE-757 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published: 2026-04-17T19:52:45.308Z
Updated: 2026-04-17T20:26:17.922Z
Reserved: 2026-04-14T15:42:14.116Z
Link: CVE-2026-32650
Updated: 2026-04-17T20:26:11.187Z
Status : Awaiting Analysis
Published: 2026-04-17T20:16:34.360
Modified: 2026-04-20T19:05:30.750
Link: CVE-2026-32650
No data.