Anviz CrossChex Standard
cpe:2.3:a:anviz:crosschex:*:*:*:*:*:*:*
- <= 0
A vulnerability exists in Anviz CX2 Lite and CX7 products due to administrative sessions being conducted over HTTP. This flaw allows on-path attackers to intercept credentials and session data, potentially leading to unauthorized access and control over the devices.
Exploitation of this vulnerability could result in intercepted credentials and session data, allowing attackers to compromise the affected device.
Anviz did not respond to CISA's attempts to coordinate these vulnerabilities. Users should contact Anviz for more information via their website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.