<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 00:35:47 +0000</lastBuildDate>
    <item>
      <title>cnvd-2017-12580</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-12580</link>
      <description>cnvd-2017-12580</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-12580</guid>
    </item>
    <item>
      <title>EUVD-2026-73725</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-73725</link>
      <description>EUVD-2026-73725</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-73725</guid>
    </item>
    <item>
      <title>fkie_cve-2017-6038</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-6038</link>
      <description>&lt;p&gt;A Cross-Site Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web application does not sufficiently verify that requests were provided by the user who submitted the request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A Cross-Site Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web application does not sufficiently verify that requests were provided by the user who submitted the request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-6038</guid>
    </item>
    <item>
      <title>GHSA-phwq-44x5-8j26</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-phwq-44x5-8j26</link>
      <description>&lt;p&gt;A Cross-Site Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web application does not sufficiently verify that requests were provided by the user who submitted the request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A Cross-Site Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web application does not sufficiently verify that requests were provided by the user who submitted the request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-phwq-44x5-8j26</guid>
    </item>
    <item>
      <title>gsd-2017-6038</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-6038</link>
      <description>gsd-2017-6038</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-6038</guid>
    </item>
    <item>
      <title>ICSA-17-026-02A — Belden Hirschmann GECKO (Update A)</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-17-026-02a</link>
      <description>&lt;p&gt;After an administrator downloads a configuration file, a copy of the configuration file, which includes hashes of user passwords, is saved to a location that is accessible without authentication.CVE-2017-5163 has been assigned to this vulnerability. A CVSS v3 base score of 5.9 has been assigned; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N). Web server receives a request, but does not sufficiently verify that the request is being sent to the expected destination.--------- Begin Update A Part 5 of 5 ------- Web application does not sufficiently verify that requests were provided by user who submitted request.CVE-2017-6036 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N ). Non-sensitive information can be obtained anonymously.CVE-2017-6038 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:L).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;After an administrator downloads a configuration file, a copy of the configuration file, which includes hashes of user passwords, is saved to a location that is accessible without authentication.CVE-2017-5163 has been assigned to this vulnerability. A CVSS v3 base score of 5.9 has been assigned; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N). Web server receives a request, but does not sufficiently verify that the request is being sent to the expected destination.--------- Begin Update A Part 5 of 5 ------- Web application does not sufficiently verify that requests were provided by user who submitted request.CVE-2017-6036 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N ). Non-sensitive information can be obtained anonymously.CVE-2017-6038 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:L).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-17-026-02a</guid>
    </item>
  </channel>
</rss>
