Areal Topkapi maintains a focused portfolio of server and web-serving products including Vision Server, WebServ1, and WebServ2. Current severity, exploitation activity, and exposure counts are shown in the live statistics alongside this summary.
The number and severity of CVEs published that impact products developed by Areal Topkapi over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-1104HIGH An unauthenticated remote attacker can bypass the brute force prevention mechanism and disturb the webservice for all users. | Feb 22, 2024 | 7.5 | 22 | NO | NO |
CVE-2023-50356MEDIUM SSL connections to some LDAP servers are vulnerable to a man-in-the-middle attack due to improper certificate validation in AREAL Topkapi Vision (Server). This allows a remote unau | Jan 31, 2024 | 6.5 | 19 | NO | NO |
CVE-2023-50357MEDIUM A cross site scripting vulnerability in the AREAL SAS Websrv1 ASP website allows a remote low-privileged attacker to gain escalated privileges of other non-admin users. | Jan 31, 2024 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Areal Topkapi.
Media articles that mention a CVE ID that affects a product developed by Areal Topkapi — matched by CVE ID, not by vendor name.