<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T19:59:07.763680+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-04933</id>
    <title>bdu:2023-04933</title>
    <updated>2026-10-04T19:59:07.855257+00:00</updated>
    <content>bdu:2023-04933</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-04933"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-193780</id>
    <title>EUVD-2026-193780</title>
    <updated>2026-10-04T19:59:07.855294+00:00</updated>
    <content>EUVD-2026-193780</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-193780"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-37857</id>
    <title>fkie_cve-2023-37857</title>
    <updated>2026-10-04T19:59:07.855309+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin privileges is able to read hardcoded cryptographic keys allowing the attacker to create valid session cookies.  These session-cookies created by the attacker are not sufficient to obtain a valid session on the device.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-37857"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rq33-29r2-6jr3</id>
    <title>GHSA-rq33-29r2-6jr3</title>
    <updated>2026-10-04T19:59:07.855341+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin privileges is able to read hardcoded cryptographic keys allowing the attacker to create valid session cookies. This issue cannot be exploited to bypass the web service authentication of the affected device(s).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rq33-29r2-6jr3"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-37857</id>
    <title>gsd-2023-37857</title>
    <updated>2026-10-04T19:59:07.855359+00:00</updated>
    <content>gsd-2023-37857</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-37857"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2023-018</id>
    <title>VDE-2023-018 — Phoenix Contact: Multiple vulnerabilities in WP 6xxx Web panels</title>
    <updated>2026-10-04T19:59:07.855370+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities allow an attacker to read arbitrary files, inject commands and bypass authentication or access control. Furthermore, hardcoded session and encryption keys as well as a missing firmware update signature and a service running with unnecessary privileges were discovered.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2023-018"/>
  </entry>
</feed>
