<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T15:40:41.445345+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-49265</id>
    <title>cnvd-2020-49265</title>
    <updated>2026-10-06T15:40:41.510955+00:00</updated>
    <content>cnvd-2020-49265</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-49265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-45226</id>
    <title>EUVD-2026-45226</title>
    <updated>2026-10-06T15:40:41.510994+00:00</updated>
    <content>EUVD-2026-45226</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-45226"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-24574</id>
    <title>fkie_cve-2020-24574</title>
    <updated>2026-10-06T15:40:41.511009+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The client (aka GalaxyClientService.exe) in GOG GALAXY through 2.0.41 (as of 12:58 AM Eastern, 9/26/21) allows local privilege escalation from any authenticated user to SYSTEM by instructing the Windows service to execute arbitrary commands. This occurs because the attacker can inject a DLL into GalaxyClient.exe, defeating the TCP-based "trusted client" protection mechanism.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-24574"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-p249-vr5g-ff3h</id>
    <title>GHSA-p249-vr5g-ff3h</title>
    <updated>2026-10-06T15:40:41.511039+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The client (aka GalaxyClientService.exe) in GOG GALAXY 2.0.19 allows local privilege escalation from any authenticated user to SYSTEM by instructing the Windows service to execute arbitrary commands. This occurs because the attacker can inject a DLL into GalaxyClient.exe, defeating the TCP-based "trusted client" protection mechanism.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-p249-vr5g-ff3h"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-24574</id>
    <title>gsd-2020-24574</title>
    <updated>2026-10-06T15:40:41.511056+00:00</updated>
    <content>gsd-2020-24574</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-24574"/>
  </entry>
</feed>
