<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T12:31:07.487412+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-10608</id>
    <title>cnvd-2020-10608</title>
    <updated>2026-10-03T12:31:07.596395+00:00</updated>
    <content>cnvd-2020-10608</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-10608"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-36444</id>
    <title>EUVD-2026-36444</title>
    <updated>2026-10-03T12:31:07.596438+00:00</updated>
    <content>EUVD-2026-36444</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-36444"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-5225</id>
    <title>fkie_cve-2020-5225</title>
    <updated>2026-10-03T12:31:07.596453+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Log injection in SimpleSAMLphp before version 1.18.4. The www/erroreport.php script, which receives error reports and sends them via email to the system administrator, did not properly sanitize the report identifier obtained from the request. This allows an attacker, under specific circumstances, to inject new log lines by manually crafting this report ID. When configured to use the file logging handler, SimpleSAMLphp will output all its logs by appending each log line to a given file. Since the reportID parameter received in a request sent to www/errorreport.php was not properly sanitized, it was possible to inject newline characters into it, effectively allowing a malicious user to inject new log lines with arbitrary content.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-5225"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6gc6-m364-85ww</id>
    <title>GHSA-6gc6-m364-85ww — Log injection in SimpleSAMLphp</title>
    <updated>2026-10-03T12:31:07.596491+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist: simplesamlphp/simplesamlphp</p>
<p>### Background</p>
<p>SimpleSAMLphp has a logging functionality that allows system administrators to keep track of the activity, errors, and statistics. Additionally, it allows users to report errors, shall they happen. An error report contains a report identifier, which is logged once submitted.</p>
<p>### Description</p>
<p>The `www/erroreport.php` script, which receives error reports and sends them via email to the system administrator, didn't properly sanitize the report identifier obtained from the request. This allows an attacker, under specific circumstances, to inject new log lines by manually crafting this report ID.</p>
<p>When configured to use the `file` logging handler, SimpleSAMLphp will output all its logs by appending each log line to a given file. Since the `reportID` parameter received in a request sent to `www/errorreport.php` was not properly sanitized, it was possible to inject newline characters into it, effectively allowing a malicious user to inject new log lines with arbitrary content.</p>
<p>### Affected versions</p>
<p>SimpleSAMLphp versions up to **1.18.3**.</p>
<p>### Impact</p>
<p>An attacker may use this issue to inject logs messages into a SimpleSAMLphp log file, trying to trick or confuse system administrators. However, the attack surface is considered small, as the attack will only work with the `file` logging handler, which opens the log file in _append-only_ mode. This means an attacker cannot edit or remove existing log messages, and even if non-ascii characters are written to the log,…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6gc6-m364-85ww"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-5225</id>
    <title>gsd-2020-5225</title>
    <updated>2026-10-03T12:31:07.596573+00:00</updated>
    <content>gsd-2020-5225</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-5225"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-5225</id>
    <title>UBUNTU-CVE-2020-5225</title>
    <updated>2026-10-03T12:31:07.596598+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: simplesamlphp, Ubuntu:Pro:18.04:LTS: simplesamlphp</p>
<p>Log injection in SimpleSAMLphp before version 1.18.4. The www/erroreport.php script, which receives error reports and sends them via email to the system administrator, did not properly sanitize the report identifier obtained from the request. This allows an attacker, under specific circumstances, to inject new log lines by manually crafting this report ID. When configured to use the file logging handler, SimpleSAMLphp will output all its logs by appending each log line to a given file. Since the reportID parameter received in a request sent to www/errorreport.php was not properly sanitized, it was possible to inject newline characters into it, effectively allowing a malicious user to inject new log lines with arbitrary content.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-5225"/>
  </entry>
</feed>
