VYPR
Medium severity4.3NVD Advisory· Published Feb 26, 2026· Updated Jul 9, 2026

CVE-2026-1694

CVE-2026-1694

Description

HTTP headers are added by the default configuration of IIS and ASP.net, and are not removed at the deployment phase of the webservices used by the WebVue, WebScheduler, TouchVue and SnapVue features of PcVue in version 12.0.0 through 16.3.3 included. It unnecessarily exposes sensitive information about the server configuration.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Arcinfo/Pcvue2 versions
    cpe:2.3:a:arcinfo:pcvue:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:arcinfo:pcvue:*:*:*:*:*:*:*:*range: >=12.0.0,<=15.2.13
    • (no CPE)range: 16.0.0
  • PcVue/WebVuellm-create
    Range: 12.0.0-16.3.3
  • PcVue/PcVuellm-fuzzy
    Range: 12.0.0-16.3.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.