<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T15:44:40.067106+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-212182</id>
    <title>EUVD-2026-212182</title>
    <updated>2026-10-06T15:44:40.070484+00:00</updated>
    <content>EUVD-2026-212182</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-212182"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-23901</id>
    <title>fkie_cve-2023-23901</title>
    <updated>2026-10-06T15:44:40.070517+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper following of a certificate's chain of trust exists in SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier, and SkyBridge BASIC MB-A130 firmware Ver. 1.4.1 and earlier, which may allow a remote unauthenticated attacker to eavesdrop on or alter the communication sent to the WebUI of the product.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-23901"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-m4jm-xmcc-hjcm</id>
    <title>GHSA-m4jm-xmcc-hjcm</title>
    <updated>2026-10-06T15:44:40.070549+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper following of a certificate's chain of trust exists in SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier, and SkyBridge BASIC MB-A130 firmware Ver. 1.4.1 and earlier, which may allow a remote unauthenticated attacker to eavesdrop on or alter the communication sent to the WebUI of the product.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-m4jm-xmcc-hjcm"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-23901</id>
    <title>gsd-2023-23901</title>
    <updated>2026-10-06T15:44:40.070568+00:00</updated>
    <content>gsd-2023-23901</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-23901"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2023-000029</id>
    <title>jvndb-2023-000029</title>
    <updated>2026-10-06T15:44:40.070580+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>SkyBridge MB-A100/A110/A200/A130 SkySpider MB-R210 provided by Seiko Solutions Inc. contain multiple vulnerabilities listed below.
&lt;ul&gt;
&lt;li&gt;Exposure of sensitive information to an unauthorized actor (CWE-200) - CVE-2016-2183
&lt;li&gt;Command injection (CWE-77) - CVE-2022-36556
&lt;li&gt;Unrestricted upload of file with dangerous type (CWE-434) - CVE-2022-36557
&lt;li&gt;Use of hard-coded credentials (CWE-798) - CVE-2022-36558
&lt;li&gt;Command injection (CWE-77) - CVE-2022-36559
&lt;li&gt;Use of hard-coded credentials (CWE-798) - CVE-2022-36560
&lt;li&gt;Improper privilege management (CWE-269) - CVE-2023-22361
&lt;li&gt;Missing authentication for critical function (CWE-306) - CVE-2023-22441
&lt;li&gt;Improper access control (CWE-284) - CVE-2023-23578
&lt;li&gt;Improper following of a certificate's chain of trust (CWE-296) - CVE-2023-23901
&lt;li&gt;Missing authentication for critical function (CWE-306) - CVE-2023-23906
&lt;li&gt;Cleartext storage of sensitive information (CWE-312) - CVE-2023-24586
&lt;li&gt;Cleartext transmission of sensitive information (CWE-319) - CVE-2023-25070
&lt;li&gt;Use of weak credentials (CWE-1391) - CVE-2023-25072
&lt;li&gt;Use of weak credentials (CWE-1391) - CVE-2023-25184
&lt;/ul&gt;
The developer states that attacks exploiting CVE-2022-36556 have been observed.


CVE-2023-22441
MASAHIRO IIDA of LAC Co., Ltd. reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.

CVE-2016-2183, CVE-2022-36556, CVE-2022-36557, CVE-2022-36558, CVE-20…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2023-000029"/>
  </entry>
</feed>
