nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-1697 CVE-2026-1697
MEDIUM
Use of unsecure cookies for GraphicalData web service and WebClient web app
Record summary
CVE-2026-1697 has a selected CVSS score of 5.3 (medium).
Description
The Secure and SameSite attribute are missing in the GraphicalData web services and WebClient web app of PcVue in version 12.0.0 through 16.3.3 included.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 26, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Default status: unaffected | CVE List | 16.0.0 to ≤ 16.3.3 | affected |
| 15.0.0 to ≤ 15.2.13 | affected | ||
| 12.0.0 | affected |
References
2pcvue.comVendor advisory
https://www.pcvue.com/security