<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-09T18:23:34.724876+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2018-15425</id>
    <title>cnvd-2018-15425</title>
    <updated>2026-10-09T18:23:34.728565+00:00</updated>
    <content>cnvd-2018-15425</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2018-15425"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-60828</id>
    <title>EUVD-2026-60828</title>
    <updated>2026-10-09T18:23:34.728599+00:00</updated>
    <content>EUVD-2026-60828</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-60828"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-0593</id>
    <title>fkie_cve-2018-0593</title>
    <updated>2026-10-09T18:23:34.728613+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Untrusted search path vulnerability in the installer of Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-0593"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-wc29-wrhx-vppg</id>
    <title>GHSA-wc29-wrhx-vppg</title>
    <updated>2026-10-09T18:23:34.728641+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Untrusted search path vulnerability in the installer of Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-wc29-wrhx-vppg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-0593</id>
    <title>gsd-2018-0593</title>
    <updated>2026-10-09T18:23:34.728656+00:00</updated>
    <content>gsd-2018-0593</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-0593"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2018-000049</id>
    <title>jvndb-2018-000049</title>
    <updated>2026-10-09T18:23:34.728667+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple Windows applications and installers provided by Microsoft contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries in the same directory where applications and/or installers reside (CWE-427).
Microsoft states that the root cause of this vulnerability is "Application Directory (App Dir) DLL planting" and attacks exploiting this vulnerability are limited, thus there is no plan to release any security updates to address this issue.

For details, refer to "Application Directory (App Dir) DLL planting" released by Microsoft.

Following researchers reported respective vulnerabilities to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning partnership.

CVE-2018-0592, CVE-2018-0593, CVE-2018-0596
Takashi Yoshikawa of Mitsui Bussan Secure Directions, Inc.

CVE-2018-0594
BlackWingCat of Pink Flying Whale

CVE-2018-0595, CVE-2018-0597
Eili Masami</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2018-000049"/>
  </entry>
</feed>
