<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 00:49:48 +0000</lastBuildDate>
    <item>
      <title>bdu:2020-00993</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-00993</link>
      <description>bdu:2020-00993</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-00993</guid>
    </item>
    <item>
      <title>certfr-2020-avi-110 — De multiples vulnérabilités ont été découvertes dans Moxa AWK-3131A.
Certaines d'entre elles permettent à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-110</link>
      <description>certfr-2020-avi-110</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-110</guid>
    </item>
    <item>
      <title>cnvd-2020-13481</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-13481</link>
      <description>cnvd-2020-13481</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-13481</guid>
    </item>
    <item>
      <title>EUVD-2026-49979</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-49979</link>
      <description>EUVD-2026-49979</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-49979</guid>
    </item>
    <item>
      <title>fkie_cve-2019-5142</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-5142</link>
      <description>&lt;p&gt;An exploitable command injection vulnerability exists in the hostname functionality of the Moxa AWK-3131A firmware version 1.13. A specially crafted entry to network configuration information can cause execution of arbitrary system commands, resulting in full control of the device. An attacker can send various authenticated requests to trigger this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An exploitable command injection vulnerability exists in the hostname functionality of the Moxa AWK-3131A firmware version 1.13. A specially crafted entry to network configuration information can cause execution of arbitrary system commands, resulting in full control of the device. An attacker can send various authenticated requests to trigger this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-5142</guid>
    </item>
    <item>
      <title>GHSA-mxg6-6xh7-6x8r</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mxg6-6xh7-6x8r</link>
      <description>&lt;p&gt;An exploitable command injection vulnerability exists in the hostname functionality of the Moxa AWK-3131A firmware version 1.13. A specially crafted entry to network configuration information can cause execution of arbitrary system commands, resulting in full control of the device. An attacker can send various authenticated requests to trigger this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An exploitable command injection vulnerability exists in the hostname functionality of the Moxa AWK-3131A firmware version 1.13. A specially crafted entry to network configuration information can cause execution of arbitrary system commands, resulting in full control of the device. An attacker can send various authenticated requests to trigger this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mxg6-6xh7-6x8r</guid>
    </item>
    <item>
      <title>gsd-2019-5142</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-5142</link>
      <description>gsd-2019-5142</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-5142</guid>
    </item>
    <item>
      <title>ICSA-20-063-04 — Moxa AWK-3131A Series Industrial AP/Bridge/Client</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-20-063-04</link>
      <description>&lt;p&gt;A specially crafted menu selection string can cause an escape from the restricted console, resulting in system access as the root user. An attacker needs to be authenticated as a low-privilege user to trigger this vulnerability.CVE-2019-5136 has been assigned to this vulnerability. A CVSS v3 base score of 8.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). The usage of hard-coded cryptographic keys allows for the decryption of captured traffic across the network to or from the device.CVE-2019-5137 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). A specially crafted diagnostic script file can cause arbitrary commands to be executed, resulting in remote control over the device. An attacker needs to be authenticated as a low-privilege user to trigger this vulnerability.CVE-2019-5138 has been assigned to this vulnerability. A CVSS v3 base score of 9.9 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H). The device operating system contains an undocumented encryption password, allowing for the creation of custom diagnostic scripts.CVE-2019-5139 has been assigned to this vulnerability. A CVSS v3 base score of 6.2 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). A specially crafted diagnostic script file name can cause user input to be reflected in a subsequent system cal…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A specially crafted menu selection string can cause an escape from the restricted console, resulting in system access as the root user. An attacker needs to be authenticated as a low-privilege user to trigger this vulnerability.CVE-2019-5136 has been assigned to this vulnerability. A CVSS v3 base score of 8.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). The usage of hard-coded cryptographic keys allows for the decryption of captured traffic across the network to or from the device.CVE-2019-5137 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). A specially crafted diagnostic script file can cause arbitrary commands to be executed, resulting in remote control over the device. An attacker needs to be authenticated as a low-privilege user to trigger this vulnerability.CVE-2019-5138 has been assigned to this vulnerability. A CVSS v3 base score of 9.9 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H). The device operating system contains an undocumented encryption password, allowing for the creation of custom diagnostic scripts.CVE-2019-5139 has been assigned to this vulnerability. A CVSS v3 base score of 6.2 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). A specially crafted diagnostic script file name can cause user input to be reflected in a subsequent system cal…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-20-063-04</guid>
    </item>
  </channel>
</rss>
