<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 23:40:53 +0000</lastBuildDate>
    <item>
      <title>bdu:2020-02742</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-02742</link>
      <description>bdu:2020-02742</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-02742</guid>
    </item>
    <item>
      <title>certfr-2020-avi-340 — De multiples vulnérabilités ont été découvertes dans les produits Cisco.
Certaines d'entre elles permettent à un attaqu…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-340</link>
      <description>certfr-2020-avi-340</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-340</guid>
    </item>
    <item>
      <title>cisco-sa-web-cmdinj3-44st5CcA — Cisco IOS XE Software Web UI Command Injection Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-web-cmdinj3-44st5cca</link>
      <description>&lt;p&gt;A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system of an affected device.&#13;
&#13;
The vulnerability is due to improper input sanitization. An attacker could exploit this vulnerability by uploading a crafted file to the web UI of an affected device. A successful exploit could allow the attacker to inject and execute arbitrary commands with root privileges on the device.&#13;
&#13;
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&#13;
&#13;
This advisory is available at the following link:&#13;
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-web-cmdinj3-44st5CcA [&amp;#34;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-web-cmdinj3-44st5CcA&amp;#34;]&#13;
&#13;
This advisory is part of the June 3, 2020, release of the Cisco IOS and IOS XE Software Security Advisory Bundled Publication, which includes 23 Cisco Security Advisories that describe 25 vulnerabilities. For a complete list of the advisories and links to them, see Cisco Event Response: June 2020 Semiannual Cisco IOS and IOS XE Software Security Advisory Bundled Publication [&amp;#34; https://sec.cloudapps.cisco.com/security/center/viewErp.x?alertId=ERP-73388&amp;#34;].&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system of an affected device.&#13;
&#13;
The vulnerability is due to improper input sanitization. An attacker could exploit this vulnerability by uploading a crafted file to the web UI of an affected device. A successful exploit could allow the attacker to inject and execute arbitrary commands with root privileges on the device.&#13;
&#13;
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&#13;
&#13;
This advisory is available at the following link:&#13;
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-web-cmdinj3-44st5CcA [&amp;#34;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-web-cmdinj3-44st5CcA&amp;#34;]&#13;
&#13;
This advisory is part of the June 3, 2020, release of the Cisco IOS and IOS XE Software Security Advisory Bundled Publication, which includes 23 Cisco Security Advisories that describe 25 vulnerabilities. For a complete list of the advisories and links to them, see Cisco Event Response: June 2020 Semiannual Cisco IOS and IOS XE Software Security Advisory Bundled Publication [&amp;#34; https://sec.cloudapps.cisco.com/security/center/viewErp.x?alertId=ERP-73388&amp;#34;].&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-web-cmdinj3-44st5cca</guid>
    </item>
    <item>
      <title>cnvd-2020-31962</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-31962</link>
      <description>cnvd-2020-31962</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-31962</guid>
    </item>
    <item>
      <title>EUVD-2026-201943</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-201943</link>
      <description>EUVD-2026-201943</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-201943</guid>
    </item>
    <item>
      <title>fkie_cve-2020-3212</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-3212</link>
      <description>&lt;p&gt;A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system of an affected device. The vulnerability is due to improper input sanitization. An attacker could exploit this vulnerability by uploading a crafted file to the web UI of an affected device. A successful exploit could allow the attacker to inject and execute arbitrary commands with root privileges on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system of an affected device. The vulnerability is due to improper input sanitization. An attacker could exploit this vulnerability by uploading a crafted file to the web UI of an affected device. A successful exploit could allow the attacker to inject and execute arbitrary commands with root privileges on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-3212</guid>
    </item>
    <item>
      <title>GHSA-5339-qqh7-6fh8</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5339-qqh7-6fh8</link>
      <description>&lt;p&gt;A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system of an affected device. The vulnerability is due to improper input sanitization. An attacker could exploit this vulnerability by uploading a crafted file to the web UI of an affected device. A successful exploit could allow the attacker to inject and execute arbitrary commands with root privileges on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system of an affected device. The vulnerability is due to improper input sanitization. An attacker could exploit this vulnerability by uploading a crafted file to the web UI of an affected device. A successful exploit could allow the attacker to inject and execute arbitrary commands with root privileges on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5339-qqh7-6fh8</guid>
    </item>
    <item>
      <title>gsd-2020-3212</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-3212</link>
      <description>gsd-2020-3212</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-3212</guid>
    </item>
  </channel>
</rss>
