<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T15:59:56.989500+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-253908</id>
    <title>EUVD-2026-253908</title>
    <updated>2026-10-03T15:59:56.992726+00:00</updated>
    <content>EUVD-2026-253908</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-253908"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-24525</id>
    <title>fkie_cve-2025-24525</title>
    <updated>2026-10-03T15:59:56.992762+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Keysight Ixia Vision has an issue with hardcoded cryptographic material 
which may allow an attacker to intercept or decrypt payloads sent to the
 device via API calls or user authentication if the end user does not 
replace the TLS certificate that shipped with the device. Remediation is
 available in Version 6.9.1, released on September 23, 2025.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-24525"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-vwrv-83mx-fgfh</id>
    <title>GHSA-vwrv-83mx-fgfh</title>
    <updated>2026-10-03T15:59:56.992795+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Keysight Ixia Vision has an issue with hardcoded cryptographic material 
which may allow an attacker to intercept or decrypt payloads sent to the
 device via API calls or user authentication if the end user does not 
replace the TLS certificate that shipped with the device. Remediation is
 available in Version 6.9.1, released on September 23, 2025.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-vwrv-83mx-fgfh"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-063-02</id>
    <title>ICSA-25-063-02 — Keysight Ixia Vision Product Family (Update A)</title>
    <updated>2026-10-03T15:59:56.992812+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Path traversal may allow remote code execution using a privileged account (requires a device admin account, which cannot be performed by a regular user). In combination with the 'Upload' functionality this vulnerability could be used to execute an arbitrary script or possibly upload a binary. Remediation is available in Version 6.7.0 released on October 20, 2024. External XML entity injection allows the arbitrary download of files. The score without the least privilege principle violation is calculated below. In combination with other issues, it may facilitate the further compromise of the device. Remediation is available in Version 6.8.0, released on March 1, 2025. Path traversal may lead to the arbitrary download of files. The score without the least privilege principle violation is calculated below. In combination with other issues, it may facilitate the further compromise of the device. Remediation is available in Version 6.8.0, released on March 1, 2025. Path traversal may lead to the arbitrary deletion of files. The score without the least privilege principle violation is calculated below. In combination with other issues, it may facilitate the further compromise of the device. Remediation is available in Version 6.8.0, released on March 1, 2025. Keysight Ixia Vision has an issue with hardcoded cryptographic material which may allow an attacker to intercept or decrypt payloads sent to the device via API calls or user authentication if the end user does not replace the…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-063-02"/>
  </entry>
</feed>
