<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T23:53:42.824334+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-210304</id>
    <title>EUVD-2026-210304</title>
    <updated>2026-10-02T23:53:42.886794+00:00</updated>
    <content>EUVD-2026-210304</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-210304"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-28013</id>
    <title>fkie_cve-2024-28013</title>
    <updated>2026-10-02T23:53:42.886829+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Use of Insufficiently Random Values vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N, WR8170N, WR8700N, WR8300N, WR8150N, WR4100N, WR4500N, WR8100N, WR8500N, CR2500P, WR8400N, WR8200N, WR1200H, WR7870S, WR6670S, WR7850S, WR6650S, WR6600H, WR7800H, WM3400RN, WM3450RN, WM3500R, WM3600R, WM3800R, WR8166N, MR01LN MR02LN, WG1810HP(JE) and WG1810HP(MF) all versions allows a attacker to change settings via the internet.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-28013"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-g5x6-qxv4-vxw3</id>
    <title>GHSA-g5x6-qxv4-vxw3</title>
    <updated>2026-10-02T23:53:42.886866+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Use of Insufficiently Random Values vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N, WR8170N, WR8700N, WR8300N, WR8150N, WR4100N, WR4500N, WR8100N, WR8500N, CR2500P, WR8400N, WR8200N, WR1200H, WR7870S, WR6670S, WR7850S, WR6650S, WR6600H, WR7800H, WM3400RN, WM3450RN, WM3500R, WM3600R, WM3800R, WR8166N, MR01LN and MR02LN all versions allows a attacker to change settings via the internet.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-g5x6-qxv4-vxw3"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2024-28013</id>
    <title>gsd-2024-28013</title>
    <updated>2026-10-02T23:53:42.886887+00:00</updated>
    <content>gsd-2024-28013</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2024-28013"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2024-000037</id>
    <title>jvndb-2024-000037</title>
    <updated>2026-10-02T23:53:42.886899+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Aterm series provided by NEC Corporation contains multiple vulnerabilities listed below.

&lt;ul&gt;
&lt;li&gt;Incorrect Permission Assignment for Critical Resource (CWE-732) - CVE-2024-28005&lt;/li&gt;
&lt;li&gt;Exposure of Sensitive System Information to an Unauthorized Control Sphere (CWE-497) - CVE-2024-28006&lt;/li&gt;
&lt;li&gt;Incorrect Permission Assignment for Critical Resource (CWE-732) - CVE-2024-28007&lt;/li&gt;
&lt;li&gt;Active Debug Code (CWE-489) - CVE-2024-28008&lt;/li&gt;
&lt;li&gt;Use of Weak Credentials (CWE-1391) - CVE-2024-28009, CVE-2024-28012&lt;/li&gt;
&lt;li&gt;Use of Hard-coded Credentials (CWE-798) - CVE-2024-28010&lt;/li&gt;
&lt;li&gt;Inclusion of Undocumented Features (CWE-1242) - CVE-2024-28011&lt;/li&gt;
&lt;li&gt;Insufficient Session Expiration (CWE-613) - CVE-2024-28013&lt;/li&gt;
&lt;li&gt;Buffer Overflow (CWE-120) - CVE-2024-28014&lt;/li&gt;
&lt;li&gt;OS Command Injection in the web management console (CWE-78) - CVE-2024-28015&lt;/li&gt;
&lt;li&gt;Exposure of Sensitive System Information to an Unauthorized Control Sphere (CWE-497) - CVE-2024-28016&lt;/li&gt;
&lt;/ul&gt;

The following people reported the vulnerabilities to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.

CVE-2024-28005, CVE-2024-28008
Ryo Kashiro, and Katsuhiko Sato, and Takayuki Sasaki, and Katsunari Yoshioka of Yokohama National University

CVE-2024-28006, CVE-2024-28007, CVE-2024-28009, CVE-2024-28010, CVE-2024-28011, CVE-2024-28012
Ryo Kashiro, and Katsuhiko Sato

CVE-2024-28013
Yudai Morii, Takaya Noma, Takayuki Sasaki, and Katsunari…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2024-000037"/>
  </entry>
</feed>
