<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T22:12:24.989044+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-02924</id>
    <title>bdu:2023-02924</title>
    <updated>2026-10-02T22:12:24.993230+00:00</updated>
    <content>bdu:2023-02924</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-02924"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-17172</id>
    <title>cnvd-2020-17172</title>
    <updated>2026-10-02T22:12:24.993263+00:00</updated>
    <content>cnvd-2020-17172</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-17172"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-59098</id>
    <title>EUVD-2026-59098</title>
    <updated>2026-10-02T22:12:24.993279+00:00</updated>
    <content>EUVD-2026-59098</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-59098"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2019-19096</id>
    <title>fkie_cve-2019-19096</title>
    <updated>2026-10-02T22:12:24.993291+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Redis data structure component used in ABB eSOMS versions 6.0 to 6.0.2 stores credentials in clear text. If an attacker has file system access, this can potentially compromise the credentials' confidentiality.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2019-19096"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-m826-r7fq-85qc</id>
    <title>GHSA-m826-r7fq-85qc</title>
    <updated>2026-10-02T22:12:24.993319+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Redis data structure component used in ABB eSOMS versions 6.0 to 6.0.2 stores credentials in clear text. If an attacker has file system access, this can potentially compromise the credentials' confidentiality.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-m826-r7fq-85qc"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2019-19096</id>
    <title>gsd-2019-19096</title>
    <updated>2026-10-02T22:12:24.993335+00:00</updated>
    <content>gsd-2019-19096</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2019-19096"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-20-072-01</id>
    <title>ICSA-20-072-01 — ICSA-20-072-01_ABB eSOMS</title>
    <updated>2026-10-02T22:12:24.993345+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>For ABB eSOMS 6.0.3 and earlier, The Cache-Control and Pragma HTTP header(s) have not been properly configured within the application response. This can potentially allow browsers and proxies to cache sensitive information.CVE-2019-19000 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N). For ABB eSOMS Versions 6.0.2 and earlier, the X-Frame-Options header is not configured in HTTP response. This can potentially allow 'ClickJacking' attacks where an attacker can frame parts of the application on a malicious website, revealing sensitive user information such as authentication credentials. CVE-2019-19001 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N). For ABB eSOMS Versions 6.0.2 and earlier, the X-XSS-Protection HTTP response header is not set in responses from the web server. For older web browser not supporting Content Security Policy, this might increase the risk of cross-site scripting. CVE-2019-19002 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N). For ABB eSOMS Versions 6.0.2 and earlier, the HTTPOnly flag is not set. This can allow JavaScript to access the cookie contents, which in turn might enable Cross-site Scripting. CVE-2019-19003 has been assigned to this vul…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-20-072-01"/>
  </entry>
</feed>
