<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T13:09:29.843369+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-06201</id>
    <title>bdu:2022-06201</title>
    <updated>2026-10-03T13:09:29.939155+00:00</updated>
    <content>bdu:2022-06201</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-06201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-29828</id>
    <title>cnvd-2021-29828</title>
    <updated>2026-10-03T13:09:29.939199+00:00</updated>
    <content>cnvd-2021-29828</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-29828"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-182413</id>
    <title>EUVD-2026-182413</title>
    <updated>2026-10-03T13:09:29.939227+00:00</updated>
    <content>EUVD-2026-182413</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-182413"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-23281</id>
    <title>fkie_cve-2021-23281</title>
    <updated>2026-10-03T13:09:29.939241+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated remote code execution vulnerability. IPM software does not sanitize the date provided via coverterCheckList action in meta_driver_srv.js class. Attackers can send a specially crafted packet to make IPM connect to rouge SNMP server and execute attacker-controlled code.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-23281"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-p6w4-xgmf-8r7g</id>
    <title>GHSA-p6w4-xgmf-8r7g</title>
    <updated>2026-10-03T13:09:29.939287+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated remote code execution vulnerability. IPM software does not sanitize the date provided via coverterCheckList action in meta_driver_srv.js class. Attackers can send a specially crafted packet to make IPM connect to rouge SNMP server and execute attacker-controlled code.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-p6w4-xgmf-8r7g"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-23281</id>
    <title>gsd-2021-23281</title>
    <updated>2026-10-03T13:09:29.939303+00:00</updated>
    <content>gsd-2021-23281</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-23281"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-21-110-06</id>
    <title>ICSA-21-110-06 — Eaton Intelligent Power Manager</title>
    <updated>2026-10-03T13:09:29.939314+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated SQL injection. A malicious user can send a specially crafted packet to exploit this vulnerability. Successful exploitation of this vulnerability can allow attackers to add users in the data base.CVE-2021-23276 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H). Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to an unauthenticated eval injection vulnerability. The software does not neutralize code syntax from users before using in the dynamic evaluation call in the loadUserFile function under scripts/libs/utils.js. Successful exploitation can allow attackers to control the input to the function and execute attacker-controlled commands.CVE-2021-23277 has been assigned to this vulnerability. A CVSS v3 base score of 8.3 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H). Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to an authenticated arbitrary file delete vulnerability induced due to improper input validation at server/maps_srv.js with the removeBackground function and server/node_upgrade_srv.js with the removeFirmware function. An attacker can send specially crafted packets to delete the files on the system where IPM software is installed.CVE-2021-23278 has been assigned to this vulnerability. A CVSS v3 base score of 8.7 h…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-21-110-06"/>
  </entry>
</feed>
