<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T23:29:30.213815+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-358696</id>
    <title>EUVD-2026-358696</title>
    <updated>2026-10-03T23:29:30.289954+00:00</updated>
    <content>EUVD-2026-358696</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-358696"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-67578</id>
    <title>fkie_cve-2026-67578</title>
    <updated>2026-10-03T23:29:30.289995+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>FA-50 all versions miss authentication for some configuration.
An attacker with access to the vessel's internal network can manipulate the product's settings screen to alter some configuration parameters.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-67578"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-g4fq-7hvq-hm4q</id>
    <title>GHSA-g4fq-7hvq-hm4q</title>
    <updated>2026-10-03T23:29:30.290031+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>FA-50 all versions miss authentication for some configuration.
An attacker with access to the vessel's internal network can manipulate the product's settings screen to alter some configuration parameters.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-g4fq-7hvq-hm4q"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-26-237-07</id>
    <title>ICSA-26-237-07 — FURUNO FA-50 Class B AIS Transponder</title>
    <updated>2026-10-03T23:29:30.290050+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An attacker, who knows the credentials and has access to the in-vessel network to which the device is connected to, may operate the settings screen using that credentials to alter the settings of the device. Some configurations may be changed on the management screen without authentication.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-26-237-07"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2026-030097</id>
    <title>jvndb-2026-030097</title>
    <updated>2026-10-03T23:29:30.290072+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>FA-50 CLASS B AIS TRANSPONDER provided by FURUNO ELECTRIC CO., LTD. contains the following vulnerabilities.&lt;a href='https://cwe.mitre.org/data/definitions/798.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/306.html' target='_blank'&gt;&lt;/a&gt;&lt;ul&gt;&lt;li&gt;Use of hard-coded credentials (CWE-798) - CVE-2026-59769&lt;/li&gt;&lt;ul&gt;&lt;li&gt;The CVSS evaluation above assumes that an attacker who knows the credentials and has access to the network to which the device is connected to operates, using that credentials, the settings screen and alter the identification number etc.&lt;/li&gt;&lt;/ul&gt;&lt;li&gt;Missing authentication for critical function (CWE-306) - CVE-2026-67578&lt;/li&gt;&lt;/ul&gt;Souvik Kandar reported these issues to CISA ICS. At the request of the developer and CISA ICS, JPCERT/CC coordinated with the developer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2026-030097"/>
  </entry>
</feed>
