CVE-2026-40434
Received Received - Intake
TCP Packet Injection Vulnerability in Anviz CrossChex Standard

Publication date: 2026-04-17

Last updated on: 2026-05-04

Assigner: ICS-CERT

Description
Anviz CrossChex Standard lacks source verification in the client/server channel, enabling TCP packet injection by an attacker on the same network to alter or disrupt application traffic.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-04-17
Last Modified
2026-05-04
Generated
2026-05-07
AI Q&A
2026-04-17
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
anviz crosschex_standard *
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-940 The product establishes a communication channel to handle an incoming request that has been initiated by an actor, but it does not properly verify that the request is coming from the expected origin.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

The vulnerability in Anviz CrossChex Standard is due to a lack of source verification in the client/server communication channel. This weakness allows an attacker who is on the same network to perform TCP packet injection, meaning they can insert malicious packets into the communication stream between the client and server.

By injecting these packets, the attacker can alter or disrupt the normal application traffic, potentially interfering with the intended operation of the software.


How can this vulnerability impact me? :

This vulnerability can impact you by allowing an attacker on the same network to manipulate or disrupt the communication between the client and server of Anviz CrossChex Standard.

  • The attacker can alter application traffic, potentially causing incorrect or malicious data to be processed.
  • The attacker can disrupt the application’s normal operation, leading to denial of service or other interruptions.

Overall, this can compromise the integrity and availability of the application.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart