Vulnerabilities
Vulnerable Software
Adacore:  Security Vulnerabilities
When AdaCore Ada Web Server 25.0.0 is linked with GnuTLS, the default behaviour of AWS.Client is vulnerable to a man-in-the-middle attack because of lack of verification of an HTTPS server's certificate (unless the using program specifies a TLS configuration).
CVSS Score
7.4
EPSS Score
0.0
Published
2025-02-26
AdaCore Ada Web Services (AWS) before 2.10.2 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters.
CVSS Score
5.0
EPSS Score
0.006
Published
2012-02-08


Contact Us

Shodan ® - All rights reserved