<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 00:10:43 +0000</lastBuildDate>
    <item>
      <title>certfr-2019-avi-615 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2019-avi-615</link>
      <description>certfr-2019-avi-615</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2019-avi-615</guid>
    </item>
    <item>
      <title>cnvd-2019-45370</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2019-45370</link>
      <description>cnvd-2019-45370</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2019-45370</guid>
    </item>
    <item>
      <title>EUVD-2026-58625</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-58625</link>
      <description>EUVD-2026-58625</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-58625</guid>
    </item>
    <item>
      <title>fkie_cve-2019-18307</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-18307</link>
      <description>&lt;p&gt;A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could trigger a Denial-of-Service condition by sending specifically crafted packets to port 5010/tcp. This vulnerability is independent from CVE-2019-18290, CVE-2019-18291, CVE-2019-18292, CVE-2019-18294, CVE-2019-18298, CVE-2019-18299, CVE-2019-18300, CVE-2019-18301, CVE-2019-18302, CVE-2019-18303, CVE-2019-18304, CVE-2019-18305, and CVE-2019-18306. Please note that an attacker needs to have network access to the MS3000 in order to exploit this vulnerability. At the time of advisory publication no public exploitation of this security vulnerability was known.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could trigger a Denial-of-Service condition by sending specifically crafted packets to port 5010/tcp. This vulnerability is independent from CVE-2019-18290, CVE-2019-18291, CVE-2019-18292, CVE-2019-18294, CVE-2019-18298, CVE-2019-18299, CVE-2019-18300, CVE-2019-18301, CVE-2019-18302, CVE-2019-18303, CVE-2019-18304, CVE-2019-18305, and CVE-2019-18306. Please note that an attacker needs to have network access to the MS3000 in order to exploit this vulnerability. At the time of advisory publication no public exploitation of this security vulnerability was known.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-18307</guid>
    </item>
    <item>
      <title>GHSA-vc56-vmhr-h868</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vc56-vmhr-h868</link>
      <description>&lt;p&gt;A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could trigger a Denial-of-Service condition by sending specifically crafted packets to port 5010/tcp. This vulnerability is independent from CVE-2019-18290, CVE-2019-18291, CVE-2019-18292, CVE-2019-18294, CVE-2019-18298, CVE-2019-18299, CVE-2019-18300, CVE-2019-18301, CVE-2019-18302, CVE-2019-18303, CVE-2019-18304, CVE-2019-18305, and CVE-2019-18306. Please note that an attacker needs to have network access to the MS3000 in order to exploit this vulnerability. At the time of advisory publication no public exploitation of this security vulnerability was known.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could trigger a Denial-of-Service condition by sending specifically crafted packets to port 5010/tcp. This vulnerability is independent from CVE-2019-18290, CVE-2019-18291, CVE-2019-18292, CVE-2019-18294, CVE-2019-18298, CVE-2019-18299, CVE-2019-18300, CVE-2019-18301, CVE-2019-18302, CVE-2019-18303, CVE-2019-18304, CVE-2019-18305, and CVE-2019-18306. Please note that an attacker needs to have network access to the MS3000 in order to exploit this vulnerability. At the time of advisory publication no public exploitation of this security vulnerability was known.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vc56-vmhr-h868</guid>
    </item>
    <item>
      <title>gsd-2019-18307</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-18307</link>
      <description>gsd-2019-18307</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-18307</guid>
    </item>
    <item>
      <title>ICSA-19-351-02 — Siemens SPPA-T3000 (Update A)</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-19-351-02</link>
      <description>&lt;p&gt;Specially crafted messages sent to the RPC service of the affected products could cause a Denial-of-Service condition on the remote and local communication functionality of the affected products. A reboot of the system is required to recover the remote and local communication functionality.&lt;/p&gt;
&lt;p&gt;Please note that an attacker needs to have network access to the Application Server in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication no public exploitation of this security vulnerability was known. The AdminService is available without authentication on the Application Server. An attacker can gain remote code execution by sending specifically crafted objects to one of its functions.&lt;/p&gt;
&lt;p&gt;Please note that an attacker needs to have access to the Application Highway in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication no public exploitation of this security vulnerability was known. The AdminService is available without authentication on the Application Server. An attacker can use methods exposed via this interface to receive password hashes of other users and to change user passwords.&lt;/p&gt;
&lt;p&gt;Please note that an attacker needs to have access to the Application Highway in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication no public exploitation of this security vulnerability was known. The RMI communication between the client and the Application Server is unencrypted. An attacker with access to the communication channel can read…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Specially crafted messages sent to the RPC service of the affected products could cause a Denial-of-Service condition on the remote and local communication functionality of the affected products. A reboot of the system is required to recover the remote and local communication functionality.&lt;/p&gt;
&lt;p&gt;Please note that an attacker needs to have network access to the Application Server in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication no public exploitation of this security vulnerability was known. The AdminService is available without authentication on the Application Server. An attacker can gain remote code execution by sending specifically crafted objects to one of its functions.&lt;/p&gt;
&lt;p&gt;Please note that an attacker needs to have access to the Application Highway in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication no public exploitation of this security vulnerability was known. The AdminService is available without authentication on the Application Server. An attacker can use methods exposed via this interface to receive password hashes of other users and to change user passwords.&lt;/p&gt;
&lt;p&gt;Please note that an attacker needs to have access to the Application Highway in order to exploit this vulnerability.&lt;/p&gt;
&lt;p&gt;At the time of advisory publication no public exploitation of this security vulnerability was known. The RMI communication between the client and the Application Server is unencrypted. An attacker with access to the communication channel can read…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-19-351-02</guid>
    </item>
  </channel>
</rss>
