<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 19:51:54 +0000</lastBuildDate>
    <item>
      <title>bdu:2014-00327</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2014-00327</link>
      <description>bdu:2014-00327</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2014-00327</guid>
    </item>
    <item>
      <title>certa-2009-avi-017 — Deux vulnérabilités de type « injection de code indirecte » ont été
identifiées dans le serveur HTTP du système Cisco I…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2009-avi-017</link>
      <description>certa-2009-avi-017</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2009-avi-017</guid>
    </item>
    <item>
      <title>EUVD-2026-128865</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-128865</link>
      <description>EUVD-2026-128865</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-128865</guid>
    </item>
    <item>
      <title>fkie_cve-2008-3821</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2008-3821</link>
      <description>&lt;p&gt;Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the ping program or (2) unspecified other aspects of the URI.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the ping program or (2) unspecified other aspects of the URI.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2008-3821</guid>
    </item>
    <item>
      <title>GHSA-xrr6-c8rc-c2wp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xrr6-c8rc-c2wp</link>
      <description>&lt;p&gt;Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the ping program or (2) unspecified other aspects of the URI.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the ping program or (2) unspecified other aspects of the URI.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xrr6-c8rc-c2wp</guid>
    </item>
    <item>
      <title>gsd-2008-3821</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2008-3821</link>
      <description>gsd-2008-3821</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2008-3821</guid>
    </item>
    <item>
      <title>jvndb-2009-000006</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2009-000006</link>
      <description>&lt;p&gt;The web-based interface implemented in Cisco IOS is vulnerable to cross-site scripting. &#13;
&#13;
Some versions of the Cisco IOS provide a web-based interface to configure the device. This web-based interface contains a cross-site scripting vulnerability.&#13;
&#13;
A wide range of versions are affected.&#13;
&#13;
If the web-based interface is disabled, it is not affected. Some versions of the Cisco IOS have the web-based interface enabled by default.&#13;
For more information, refer to the information provided by Cisco.&#13;
&#13;
NOBUHIRO TSUJI of NTT DATA SECURITY CORPORATION reported this vulnerability to IPA.&#13;
JPCERT/CC coordinated with the vendor under Information Security Early Warning Partnership.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The web-based interface implemented in Cisco IOS is vulnerable to cross-site scripting. &#13;
&#13;
Some versions of the Cisco IOS provide a web-based interface to configure the device. This web-based interface contains a cross-site scripting vulnerability.&#13;
&#13;
A wide range of versions are affected.&#13;
&#13;
If the web-based interface is disabled, it is not affected. Some versions of the Cisco IOS have the web-based interface enabled by default.&#13;
For more information, refer to the information provided by Cisco.&#13;
&#13;
NOBUHIRO TSUJI of NTT DATA SECURITY CORPORATION reported this vulnerability to IPA.&#13;
JPCERT/CC coordinated with the vendor under Information Security Early Warning Partnership.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2009-000006</guid>
    </item>
  </channel>
</rss>
