<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T22:52:26.670970+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-278143</id>
    <title>EUVD-2026-278143</title>
    <updated>2026-10-07T22:52:26.764870+00:00</updated>
    <content>EUVD-2026-278143</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-278143"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-51977</id>
    <title>fkie_cve-2024-51977</title>
    <updated>2026-10-07T22:52:26.764911+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An unauthenticated attacker who can access either the HTTP service (TCP port 80), the HTTPS service (TCP port 443), or the IPP service (TCP port 631), can leak several pieces of sensitive information from a vulnerable device. The URI path /etc/mnt_info.csv can be accessed via a GET request and no authentication is required. The returned result is a comma separated value (CSV) table of information. The leaked information includes the device’s model, firmware version, IP address, and serial number.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-51977"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-27h4-8c24-mx7w</id>
    <title>GHSA-27h4-8c24-mx7w</title>
    <updated>2026-10-07T22:52:26.764950+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An unauthenticated attacker who can access either the HTTP service (TCP port 80), the HTTPS service (TCP port 443), or the IPP service (TCP port 631), can leak several pieces of sensitive information from a vulnerable device. The URI path /etc/mnt_info.csv can be accessed via a GET request and no authentication is required. The returned result is a comma separated value (CSV) table of information. The leaked information includes the device’s model, firmware version, IP address, and serial number.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-27h4-8c24-mx7w"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2025-007519</id>
    <title>jvndb-2025-007519</title>
    <updated>2026-10-07T22:52:26.764971+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple BROTHER products provided by BROTHER INDUSTRIES, LTD. contain multiple vulnerabilities listed below.

* Exposure of sensitive system information to an unauthorized control sphere (CWE-497) - CVE-2024-51977
* Use of weak credentials (CWE-1391) - CVE-2024-51978
* Stack-based buffer overflow (CWE-121) - CVE-2024-51979
* Server-side request forgery (CWE-918) - CVE-2024-51980, CVE-2024-51981
* Improper handling of unexpected data type (CWE-241) - CVE-2024-51982
* Improper enforcement of behavioral workflow (CWE-841) - CVE-2024-51983
* Insufficiently protected credentials (CWE-522) - CVE-2024-51984

Stephen Fewer of Rapid7 reported this vulnerability to the developer.
JPCERT/CC coordinated between the reporter and the developer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2025-007519"/>
  </entry>
</feed>
