<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T07:00:23.044287+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2019-01320</id>
    <title>cnvd-2019-01320</title>
    <updated>2026-10-06T07:00:23.047975+00:00</updated>
    <content>cnvd-2019-01320</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2019-01320"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-67911</id>
    <title>EUVD-2026-67911</title>
    <updated>2026-10-06T07:00:23.048007+00:00</updated>
    <content>EUVD-2026-67911</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-67911"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-16165</id>
    <title>fkie_cve-2018-16165</title>
    <updated>2026-10-06T07:00:23.048021+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting vulnerability in LogonTracer 1.2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-16165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3ccj-6ghv-9ggf</id>
    <title>GHSA-3ccj-6ghv-9ggf</title>
    <updated>2026-10-06T07:00:23.048048+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting vulnerability in LogonTracer 1.2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3ccj-6ghv-9ggf"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-16165</id>
    <title>gsd-2018-16165</title>
    <updated>2026-10-06T07:00:23.048063+00:00</updated>
    <content>gsd-2018-16165</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-16165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2018-009127</id>
    <title>jvndb-2018-009127</title>
    <updated>2026-10-06T07:00:23.048074+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>LogonTracer provided by JPCERT Coordination Center is a tool to investigate malicious Windows logon by visualizing and analyzing Windows event log.  LogonTracer contains multiple vulnerabilities listed below.

  * Cross-site Scripting (CWE-79) - CVE-2018-16165
    CVSS v3	CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N	Base Score: 6.1
    CVSS v2	AV:N/AC:M/Au:N/C:N/I:P/A:N	Base Score: 4.3
  * XXE (XML External Entity) Injection (CWE-611) - CVE-2018-16166
    CVSS v3	CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:L	Base Score: 6.1
    CVSS v2	AV:N/AC:L/Au:N/C:P/I:N/A:N	Base Score: 5.0
  * OS Command Injection (CWE-78) - CVE-2018-16167
    CVSS v3	CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H	Base Score: 10.0
    CVSS v2	AV:N/AC:L/Au:N/C:P/I:P/A:P	Base Score: 7.5
  * Code Injection (CWE-94) - CVE-2018-16168
    CVSS v3	CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H	Base Score: 10.0
    CVSS v2	AV:N/AC:L/Au:N/C:P/I:P/A:P	Base Score: 7.5

Shoji Baba of Kobe Digital Labo, Inc. reported these vulnerabilities to JPCERT/CC, and JPCERT/CC fixed those vulnerabilities and released the updated version of software.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2018-009127"/>
  </entry>
</feed>
