<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T00:10:14.580675+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-210978</id>
    <title>EUVD-2026-210978</title>
    <updated>2026-10-08T00:10:14.583901+00:00</updated>
    <content>EUVD-2026-210978</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-210978"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-0451</id>
    <title>fkie_cve-2023-0451</title>
    <updated>2026-10-08T00:10:14.583940+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Econolite EOS versions prior to 3.2.23 lack a password
requirement for gaining “READONLY” access to log files and certain database and
configuration files. One such file contains tables with MD5 hashes and
usernames for all defined users in the control software, including
administrators and technicians.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-0451"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-q8j4-3fxm-87xm</id>
    <title>GHSA-q8j4-3fxm-87xm</title>
    <updated>2026-10-08T00:10:14.583978+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>All versions of Econolite EOS traffic control software are vulnerable to CWE-284: Improper Access Control, and lack a password requirement for gaining “READONLY” access to log files, as well as certain database and configuration files. One such file contains tables with message-digest algorithm 5 (MD5) hashes and usernames for all defined users in the control software, including administrators and technicians.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-q8j4-3fxm-87xm"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-0451</id>
    <title>gsd-2023-0451</title>
    <updated>2026-10-08T00:10:14.583999+00:00</updated>
    <content>gsd-2023-0451</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-0451"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-23-026-02</id>
    <title>ICSA-23-026-02 — Econolite EOS (Update A)</title>
    <updated>2026-10-08T00:10:14.584011+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Econolite EOS versions prior to 3.2.23 lack a password requirement for gaining "READONLY" access to log files and certain database and configuration files. One such file contains tables with MD5 hashes and usernames for all defined users in the control software, including administrators and technicians. Econolite EOS versions prior to 3.2.23 use a weak hash algorithm for encrypting privileged user credentials. A configuration file that is accessible without authentication uses MD5 hashes for encrypting credentials, including those of administrators and technicians.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-23-026-02"/>
  </entry>
</feed>
