<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T12:47:55.435683+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0935</id>
    <title>certfr-2023-avi-0935 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;les produits Siemens&lt;/span&gt;. Certaines d'entr…</title>
    <updated>2026-10-02T12:47:55.440126+00:00</updated>
    <content>certfr-2023-avi-0935</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0935"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-219670</id>
    <title>EUVD-2026-219670</title>
    <updated>2026-10-02T12:47:55.440167+00:00</updated>
    <content>EUVD-2026-219670</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-219670"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-2567</id>
    <title>fkie_cve-2023-2567</title>
    <updated>2026-10-02T12:47:55.440182+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A SQL Injection vulnerability has been found in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality.
Authenticated users may be able to execute arbitrary SQL statements on the DBMS used by the web application.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-2567"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-c36w-mp78-5hh7</id>
    <title>GHSA-c36w-mp78-5hh7</title>
    <updated>2026-10-02T12:47:55.440210+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality, allows an authenticated attacker to execute arbitrary SQL queries on the DBMS used by the web application.
Authenticated users can extract arbitrary information from the DBMS in an uncontrolled way.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-c36w-mp78-5hh7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-2567</id>
    <title>gsd-2023-2567</title>
    <updated>2026-10-02T12:47:55.440227+00:00</updated>
    <content>gsd-2023-2567</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-2567"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-23-320-14</id>
    <title>ICSA-23-320-14 — Siemens RUGGEDCOM APE1808 Devices</title>
    <updated>2026-10-02T12:47:55.440238+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality, allows an authenticated attacker to execute arbitrary SQL queries on the DBMS used by the web application.
Authenticated users can extract arbitrary information from the DBMS in an uncontrolled way. A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields used in the Asset Intelligence functionality of our IDS, may allow an unauthenticated attacker to execute arbitrary SQL statements on the DBMS used by the web application by sending specially crafted malicious network packets.

Malicious users with extensive knowledge on the underlying system may be able to extract arbitrary information from the DBMS in an uncontrolled way, or to alter its structure and data. A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields used in the Asset Intelligence functionality of our IDS, allows an unauthenticated attacker to crash the IDS module by sending specially crafted malformed network packets.

During the (limited) time window before the IDS module is automatically restarted, network traffic may not be analyzed.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-23-320-14"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/nn-2023:9-01</id>
    <title>NN-2023:9-01 — Authenticated SQL Injection on Query functionality in Guardian/CMC before 22.6.3 and 23.1.0</title>
    <updated>2026-10-02T12:47:55.440264+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A SQL Injection vulnerability has been found in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/nn-2023:9-01"/>
  </entry>
</feed>
