<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 15:48:23 +0000</lastBuildDate>
    <item>
      <title>cisco-sa-20180905-acsxxe — Cisco Secure Access Control Server XML External Entity Injection Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-20180905-acsxxe</link>
      <description>&lt;p&gt;A vulnerability in the web-based UI of Cisco Secure Access Control Server could allow an authenticated, remote attacker to gain read access to certain information in an affected system.&#13;
&#13;
The vulnerability is due to improper handling of XML External Entities (XXEs) when parsing an XML file. An attacker could exploit this vulnerability by convincing the administrator of an affected system to import a crafted XML file.&#13;
&#13;
There are no workarounds that address this vulnerability.&#13;
&#13;
This advisory is available at the following link:&#13;
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180905-acsxxe [&amp;#34;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180905-acsxxe&amp;#34;]&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web-based UI of Cisco Secure Access Control Server could allow an authenticated, remote attacker to gain read access to certain information in an affected system.&#13;
&#13;
The vulnerability is due to improper handling of XML External Entities (XXEs) when parsing an XML file. An attacker could exploit this vulnerability by convincing the administrator of an affected system to import a crafted XML file.&#13;
&#13;
There are no workarounds that address this vulnerability.&#13;
&#13;
This advisory is available at the following link:&#13;
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180905-acsxxe [&amp;#34;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180905-acsxxe&amp;#34;]&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-20180905-acsxxe</guid>
    </item>
    <item>
      <title>cnvd-2018-18758</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-18758</link>
      <description>cnvd-2018-18758</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-18758</guid>
    </item>
    <item>
      <title>EUVD-2026-204458</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-204458</link>
      <description>EUVD-2026-204458</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-204458</guid>
    </item>
    <item>
      <title>fkie_cve-2018-0414</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-0414</link>
      <description>&lt;p&gt;A vulnerability in the web-based UI of Cisco Secure Access Control Server could allow an authenticated, remote attacker to gain read access to certain information in an affected system. The vulnerability is due to improper handling of XML External Entities (XXEs) when parsing an XML file. An attacker could exploit this vulnerability by convincing the administrator of an affected system to import a crafted XML file.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web-based UI of Cisco Secure Access Control Server could allow an authenticated, remote attacker to gain read access to certain information in an affected system. The vulnerability is due to improper handling of XML External Entities (XXEs) when parsing an XML file. An attacker could exploit this vulnerability by convincing the administrator of an affected system to import a crafted XML file.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-0414</guid>
    </item>
    <item>
      <title>GHSA-pgwj-m55x-47m9</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-pgwj-m55x-47m9</link>
      <description>&lt;p&gt;A vulnerability in the web-based UI of Cisco Secure Access Control Server could allow an authenticated, remote attacker to gain read access to certain information in an affected system. The vulnerability is due to improper handling of XML External Entities (XXEs) when parsing an XML file. An attacker could exploit this vulnerability by convincing the administrator of an affected system to import a crafted XML file.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web-based UI of Cisco Secure Access Control Server could allow an authenticated, remote attacker to gain read access to certain information in an affected system. The vulnerability is due to improper handling of XML External Entities (XXEs) when parsing an XML file. An attacker could exploit this vulnerability by convincing the administrator of an affected system to import a crafted XML file.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-pgwj-m55x-47m9</guid>
    </item>
    <item>
      <title>gsd-2018-0414</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-0414</link>
      <description>gsd-2018-0414</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-0414</guid>
    </item>
  </channel>
</rss>
