<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T00:11:17.862899+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0180</id>
    <title>certfr-2024-avi-0180 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;les produits IBM&lt;/span&gt;. Certaines d'entre el…</title>
    <updated>2026-10-03T00:11:18.046980+00:00</updated>
    <content>certfr-2024-avi-0180</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0180"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-113214</id>
    <title>EUVD-2026-113214</title>
    <updated>2026-10-03T00:11:18.047032+00:00</updated>
    <content>EUVD-2026-113214</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-113214"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2012-5784</id>
    <title>fkie_cve-2012-5784</title>
    <updated>2026-10-03T00:11:18.047054+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Apache Axis 1.4 and earlier, as used in PayPal Payments Pro, PayPal Mass Pay, PayPal Transactional Information SOAP, the Java Message Service implementation in Apache ActiveMQ, and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2012-5784"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-55w9-c3g2-4rrh</id>
    <title>GHSA-55w9-c3g2-4rrh — Man-in-the-middle attack in Apache Axis</title>
    <updated>2026-10-03T00:11:18.047101+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.apache.axis:axis, Maven: axis:axis</p>
<p>Apache Axis 1.4 and earlier, as used in PayPal Payments Pro, PayPal Mass Pay, PayPal Transactional Information SOAP, the Java Message Service implementation in Apache ActiveMQ, and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-55w9-c3g2-4rrh"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2012-5784</id>
    <title>gsd-2012-5784</title>
    <updated>2026-10-03T00:11:18.047146+00:00</updated>
    <content>gsd-2012-5784</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2012-5784"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2019:1497-1</id>
    <title>openSUSE-SU-2019:1497-1 — Security update for axis</title>
    <updated>2026-10-03T00:11:18.047165+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for axis</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2019:1497-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2013:0269</id>
    <title>RHSA-2013:0269 — Red Hat Security Advisory: axis security update</title>
    <updated>2026-10-03T00:11:18.047192+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>axis: missing connection hostname check against X.509 certificate name</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2013:0269"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2019:1373-1</id>
    <title>SUSE-SU-2019:1373-1 — Security update for axis</title>
    <updated>2026-10-03T00:11:18.047239+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for axis</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2019:1373-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0273</id>
    <title>WID-SEC-W-2023-0273 — IBM Maximo Asset Management: Mehrere Schwachstellen</title>
    <updated>2026-10-03T00:11:18.047267+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein anonymer Angreifer im angrenzenden Netzbereich kann mehrere Schwachstellen in IBM Maximo Asset Management ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen oder Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0273"/>
  </entry>
</feed>
