<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T19:33:58.555566+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-365897</id>
    <title>EUVD-2026-365897</title>
    <updated>2026-10-02T19:33:58.616437+00:00</updated>
    <content>EUVD-2026-365897</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-365897"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-77974</id>
    <title>fkie_cve-2026-77974</title>
    <updated>2026-10-02T19:33:58.616475+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>After spoofing the device and obtaining one user confirmation, an attacker may be able to cause the application to transmit firmware through an unauthenticated and unsigned update channel.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-77974"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9c93-gw6q-j6xv</id>
    <title>GHSA-9c93-gw6q-j6xv</title>
    <updated>2026-10-02T19:33:58.616507+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>After spoofing the device and obtaining one user confirmation, an attacker may be able to cause the application to transmit firmware through an unauthenticated and unsigned update channel.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9c93-gw6q-j6xv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/va-26-251-01</id>
    <title>VA-26-251-01 — Softish C6 Ear Camera and EarVision Android Application</title>
    <updated>2026-10-02T19:33:58.616524+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The C6 ear camera transmits live video to the EarVision Android application over unencrypted UDP streams. The application manifest permits cleartext traffic, and captured network traffic contains reconstructable JPEG or WEBP video frames transmitted over UDP. An attacker within local wireless range may capture and reconstruct the live video stream without transport encryption. An attacker could impersonate the camera and place themselves in a man-in-the-middle or device-emulation position. This permits manipulation of device status responses, observation of application requests, and potential triggering of firmware-update behavior. An attacker could derive the camera's Wi-Fi password and connect to its wireless network. This weakens or eliminates the security value of the access-point password and may expose the live video stream, device services, status interfaces, and firmware-update functionality. After spoofing the device and obtaining one user confirmation, an attacker may be able to cause the application to transmit firmware through an unauthenticated and unsigned update channel.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/va-26-251-01"/>
  </entry>
</feed>
