<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T15:35:52.306345+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2015-06161</id>
    <title>bdu:2015-06161</title>
    <updated>2026-10-03T15:35:52.668061+00:00</updated>
    <content>bdu:2015-06161</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2015-06161"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certa-2011-avi-416</id>
    <title>certa-2011-avi-416 — La console d'administration web de Samba est vulnérable à des injections
de code indirectes et à des injections de requ…</title>
    <updated>2026-10-03T15:35:52.668100+00:00</updated>
    <content>certa-2011-avi-416</content>
    <link href="https://cve.radiocsirt.org/vuln/certa-2011-avi-416"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-115711</id>
    <title>EUVD-2026-115711</title>
    <updated>2026-10-03T15:35:52.668118+00:00</updated>
    <content>EUVD-2026-115711</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-115711"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2011-2694</id>
    <title>fkie_cve-2011-2694</title>
    <updated>2026-10-03T15:35:52.668130+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the username parameter to the passwd program (aka the user field to the Change Password page).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2011-2694"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9xqr-g3w9-82pj</id>
    <title>GHSA-9xqr-g3w9-82pj</title>
    <updated>2026-10-03T15:35:52.668158+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the username parameter to the passwd program (aka the user field to the Change Password page).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9xqr-g3w9-82pj"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2011-2694</id>
    <title>gsd-2011-2694</title>
    <updated>2026-10-03T15:35:52.668175+00:00</updated>
    <content>gsd-2011-2694</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2011-2694"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2011-002111</id>
    <title>jvndb-2011-002111</title>
    <updated>2026-10-03T15:35:52.668185+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Samba Web Administration Tool contains a cross-site scripting vulnerability.

Samba Web Administration Tool (SWAT) allows for Samba configuration through a web interface. SWAT contains a cross-site scripting vulnerability.

SWAT is disabled in a default configuration of Samba.

nobuhiro tsuji of NTT DATA INTELLILINK CORPORATION reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2011-002111"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10069-1</id>
    <title>openSUSE-SU-2024:10069-1 — ctdb-4.5.0-1.1 on GA media</title>
    <updated>2026-10-03T15:35:52.668204+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ctdb-4.5.0-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10069-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2011:1219</id>
    <title>RHSA-2011:1219 — Red Hat Security Advisory: samba security update</title>
    <updated>2026-10-03T15:35:52.668247+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>samba: mount.cifs improper device name and mountpoint strings sanitization samba: Race condition by mount (mount.cifs) operations samba/cifs-utils: mount.cifs and umount.cifs fail to anticipate RLIMIT_FSIZE (SWAT): Absent CSRF protection in various Samba web configuration formulars (SWAT): XSS flaw in Change Password page Samba mtab lock file race condition</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2011:1219"/>
  </entry>
</feed>
