<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:22:55.387140+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0228</id>
    <title>certfr-2023-avi-0228 — De multiples vulnérabilités ont été découvertes dans les produits SAP.
Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-03T05:22:55.453610+00:00</updated>
    <content>certfr-2023-avi-0228</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0228"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2023-100015</id>
    <title>cnvd-2023-100015</title>
    <updated>2026-10-03T05:22:55.453653+00:00</updated>
    <content>cnvd-2023-100015</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2023-100015"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-219476</id>
    <title>EUVD-2026-219476</title>
    <updated>2026-10-03T05:22:55.453670+00:00</updated>
    <content>EUVD-2026-219476</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-219476"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-27894</id>
    <title>fkie_cve-2023-27894</title>
    <updated>2026-10-03T05:22:55.453682+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>SAP BusinessObjects Business Intelligence Platform (Web Services) - versions 420, 430, allows an attacker to inject arbitrary values as CMS parameters to perform lookups on the internal network which is otherwise not accessible externally. On successful exploitation, attacker can scan internal network to determine internal infrastructure for further attacks like remote file inclusion, retrieve server files, bypass firewall and force the vulnerable server to execute malicious requests, resulting in sensitive information disclosure. This causes limited impact on confidentiality of data.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-27894"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-w7jv-qf6x-vrwr</id>
    <title>GHSA-w7jv-qf6x-vrwr</title>
    <updated>2026-10-03T05:22:55.453715+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>SAP BusinessObjects Business Intelligence Platform (Web Services) - versions 420, 430, allows an attacker to inject arbitrary values as CMS parameters to perform lookups on the internal network which is otherwise not accessible externally. On successful exploitation, attacker can scan internal network to determine internal infrastructure for further attacks like remote file inclusion, retrieve server files, bypass firewall and force the vulnerable server to execute malicious requests, resulting in sensitive information disclosure. This causes limited impact on confidentiality of data.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-w7jv-qf6x-vrwr"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-27894</id>
    <title>gsd-2023-27894</title>
    <updated>2026-10-03T05:22:55.453733+00:00</updated>
    <content>gsd-2023-27894</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-27894"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0635</id>
    <title>WID-SEC-W-2023-0635 — SAP Patchday März 2023</title>
    <updated>2026-10-03T05:22:55.453750+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand zu verursachen, Daten zu manipulieren und einen Cross-Site-Scripting-Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0635"/>
  </entry>
</feed>
