<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T20:26:40.640322+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2016-00361</id>
    <title>bdu:2016-00361</title>
    <updated>2026-10-08T20:26:40.744610+00:00</updated>
    <content>bdu:2016-00361</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2016-00361"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2016-00208</id>
    <title>cnvd-2016-00208</title>
    <updated>2026-10-08T20:26:40.744646+00:00</updated>
    <content>cnvd-2016-00208</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2016-00208"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-95384</id>
    <title>EUVD-2026-95384</title>
    <updated>2026-10-08T20:26:40.744661+00:00</updated>
    <content>EUVD-2026-95384</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-95384"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2015-7938</id>
    <title>fkie_cve-2015-7938</title>
    <updated>2026-10-08T20:26:40.744673+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Advantech EKI-132x devices with firmware before 2015-12-31 allow remote attackers to bypass authentication via unspecified vectors.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2015-7938"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-xxch-h4gf-8fh3</id>
    <title>GHSA-xxch-h4gf-8fh3</title>
    <updated>2026-10-08T20:26:40.744743+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Advantech EKI-132x devices with firmware before 2015-12-31 allow remote attackers to bypass authentication via unspecified vectors.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-xxch-h4gf-8fh3"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2015-7938</id>
    <title>gsd-2015-7938</title>
    <updated>2026-10-08T20:26:40.744759+00:00</updated>
    <content>gsd-2015-7938</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2015-7938"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-15-344-01b</id>
    <title>ICSA-15-344-01B — Advantech EKI Vulnerabilities (Update B)</title>
    <updated>2026-10-08T20:26:40.744770+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka "ShellShock."  NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix. The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packets, which allows remote attackers to obtain sensitive information from process memory via crafted packets that trigger a buffer over-read, as demonstrated by reading private keys, related to d1_both.c and t1_lib.c, aka the Heartbleed bug. Stack-based buffer overflow in the get_packet method in socket.c in dhcpcd 3.2.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long packet. Advantech EKI-132x devices with firmware before 2015-12-31 allow remote attackers to bypass authentication via unspecified vectors.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-15-344-01b"/>
  </entry>
</feed>
