<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T19:21:21.128861+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2020-00636</id>
    <title>bdu:2020-00636</title>
    <updated>2026-10-08T19:21:21.206162+00:00</updated>
    <content>bdu:2020-00636</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2020-00636"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2019-avi-598</id>
    <title>certfr-2019-avi-598 — De multiples vulnérabilités ont été découvertes dans Moxa AWK-3121.
Certaines d'entre elles permettent à un attaquant d…</title>
    <updated>2026-10-08T19:21:21.206200+00:00</updated>
    <content>certfr-2019-avi-598</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2019-avi-598"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2019-17009</id>
    <title>cnvd-2019-17009</title>
    <updated>2026-10-08T19:21:21.206219+00:00</updated>
    <content>cnvd-2019-17009</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2019-17009"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-64765</id>
    <title>EUVD-2026-64765</title>
    <updated>2026-10-08T19:21:21.206232+00:00</updated>
    <content>EUVD-2026-64765</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-64765"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-10702</id>
    <title>fkie_cve-2018-10702</title>
    <updated>2026-10-08T19:21:21.206242+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troubleshoot any issues. However, the same functionality allows an attacker to execute commands on the device. The POST parameter "iw_filename" is susceptible to command injection via shell metacharacters.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-10702"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-v2h2-pvv7-ffw4</id>
    <title>GHSA-v2h2-pvv7-ffw4</title>
    <updated>2026-10-08T19:21:21.206272+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered on Moxa AWK-3121 1.14 devices. It provides functionality so that an administrator can run scripts on the device to troubleshoot any issues. However, the same functionality allows an attacker to execute commands on the device. The POST parameter "iw_filename" is susceptible to command injection via shell metacharacters.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-v2h2-pvv7-ffw4"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-10702</id>
    <title>gsd-2018-10702</title>
    <updated>2026-10-08T19:21:21.206288+00:00</updated>
    <content>gsd-2018-10702</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-10702"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-19-337-02</id>
    <title>ICSA-19-337-02 — Moxa AWK-3121</title>
    <updated>2026-10-08T19:21:21.206298+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The device uses HTTP traffic by default allowing insecure communication to the web server, which could allow an attacker to compromise sensitive data such as credentials.CVE-2018-10690 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). An attacker can navigate to a URL and download the system log without authentication, which may allow access to sensitive information.CVE-2018-10691 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). A cross-site scripting attack allows access to session cookies, which may allow an attacker to login into the device.CVE-2018-10692 has been assigned to this vulnerability. A CVSS v3 base score of 6.1 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N). An unauthorized user may execute network troubleshooting commands to cause a buffer overflow condition, which may allow the attacker to execute commands on the device.CVE-2018-10693 has been assigned to this vulnerability. A CVSS v3 base score of 8.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). The Wi-Fi connection used to set up the device is not encrypted by default, which may allow an attacker to capture sensitive data.CVE-2018-10694 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculat…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-19-337-02"/>
  </entry>
</feed>
