<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T20:53:59.772760+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-15628</id>
    <title>bdu:2025-15628</title>
    <updated>2026-10-03T20:53:59.841222+00:00</updated>
    <content>bdu:2025-15628</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-15628"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2026-00020</id>
    <title>cnvd-2026-00020</title>
    <updated>2026-10-03T20:53:59.841266+00:00</updated>
    <content>cnvd-2026-00020</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2026-00020"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-265532</id>
    <title>EUVD-2026-265532</title>
    <updated>2026-10-03T20:53:59.841282+00:00</updated>
    <content>EUVD-2026-265532</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-265532"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-56838</id>
    <title>fkie_cve-2024-56838</title>
    <updated>2026-10-03T20:53:59.841294+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions &lt; V2.17.0), RUGGEDCOM ROX MX5000RE (All versions &lt; V2.17.0), RUGGEDCOM ROX RX1400 (All versions &lt; V2.17.0), RUGGEDCOM ROX RX1500 (All versions &lt; V2.17.0), RUGGEDCOM ROX RX1501 (All versions &lt; V2.17.0), RUGGEDCOM ROX RX1510 (All versions &lt; V2.17.0), RUGGEDCOM ROX RX1511 (All versions &lt; V2.17.0), RUGGEDCOM ROX RX1512 (All versions &lt; V2.17.0), RUGGEDCOM ROX RX1524 (All versions &lt; V2.17.0), RUGGEDCOM ROX RX1536 (All versions &lt; V2.17.0), RUGGEDCOM ROX RX5000 (All versions &lt; V2.17.0). The SCEP client available in the affected device for secure certificate enrollment lacks validation of multiple fields. An attacker could leverage this scenario to execute arbitrary code as root user.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-56838"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7g84-v2xm-86jp</id>
    <title>GHSA-7g84-v2xm-86jp</title>
    <updated>2026-10-03T20:53:59.841327+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability has been identified in RUGGEDCOM ROX II family (All versions &lt; V2.17.0). The SCEP client available in the affected device for secure certificate enrollment lacks validation of multiple fields. An attacker could leverage this scenario to execute arbitrary code as root user.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7g84-v2xm-86jp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-26-015-11</id>
    <title>ICSA-26-015-11 — Siemens RUGGEDCOM ROX II</title>
    <updated>2026-10-03T20:53:59.841344+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The DHCP Server configuration file of the affected products is subject to code injection. An attacker could leverage this vulnerability to spawn a reverse shell and gain root access on the affected system. During the Dynamic DNS configuration of the affected product it is possible to inject additional configuration parameters. Under certain circumstances, an attacker could leverage this vulnerability to spawn a reverse shell and gain root access on the affected system. Due to the insufficient validation during the installation and load of certain configuration files of the affected device, an attacker could spawn a reverse shell and gain root access on the affected system. The SCEP client available in the affected device for secure certificate enrollment lacks validation of multiple fields. An attacker could leverage this scenario to execute arbitrary code as root user. Code injection can be achieved when the affected device is using VRF (Virtual Routing and Forwarding). An attacker could leverage this scenario to execute arbitrary code as root user. Under certain conditions, IPsec may allow code injection in the affected device. An attacker could leverage this scenario to execute arbitrary code as root user.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-26-015-11"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-912274</id>
    <title>SSA-912274 — SSA-912274: Multiple Vulnerabilities in RUGGEDCOM ROX Before V2.17</title>
    <updated>2026-10-03T20:53:59.841370+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The DHCP Server configuration file of the affected products is subject to code injection. An attacker could leverage this vulnerability to spawn a reverse shell and gain root access on the affected system. During the Dynamic DNS configuration of the affected product it is possible to inject additional configuration parameters. Under certain circumstances, an attacker could leverage this vulnerability to spawn a reverse shell and gain root access on the affected system. Due to the insufficient validation during the installation and load of certain configuration files of the affected device, an attacker could spawn a reverse shell and gain root access on the affected system. The SCEP client available in the affected device for secure certificate enrollment lacks validation of multiple fields. An attacker could leverage this scenario to execute arbitrary code as root user. Code injection can be achieved when the affected device is using VRF (Virtual Routing and Forwarding). An attacker could leverage this scenario to execute arbitrary code as root user. Under certain conditions, IPsec may allow code injection in the affected device. An attacker could leverage this scenario to execute arbitrary code as root user.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-912274"/>
  </entry>
</feed>
