Vulnerabilities (CVE)

Filtered by vendor Adacore Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-1035 1 Adacore 1 Ada Web Services 2025-04-11 5.0 MEDIUM N/A
AdaCore Ada Web Services (AWS) before 2.10.2 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters.
CVE-2024-55581 2 Adacore, Debian 2 Ada Web Server, Debian Linux 2025-04-07 N/A 7.4 HIGH
When AdaCore Ada Web Server 25.0.0 is linked with GnuTLS, the default behaviour of AWS.Client is vulnerable to a man-in-the-middle attack because of lack of verification of an HTTPS server's certificate (unless the using program specifies a TLS configuration).