<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 18:44:24 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-03014</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-03014</link>
      <description>bdu:2023-03014</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-03014</guid>
    </item>
    <item>
      <title>cnvd-2021-37941</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-37941</link>
      <description>cnvd-2021-37941</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-37941</guid>
    </item>
    <item>
      <title>EUVD-2026-25536</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-25536</link>
      <description>EUVD-2026-25536</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-25536</guid>
    </item>
    <item>
      <title>fkie_cve-2021-27463</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-27463</link>
      <description>&lt;p&gt;A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-27463</guid>
    </item>
    <item>
      <title>GHSA-c9w5-6v8f-m5c7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c9w5-6v8f-m5c7</link>
      <description>&lt;p&gt;A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c9w5-6v8f-m5c7</guid>
    </item>
    <item>
      <title>gsd-2021-27463</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-27463</link>
      <description>gsd-2021-27463</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-27463</guid>
    </item>
    <item>
      <title>ICSA-21-138-01 — ICSA-21-138-01_Emerson Rosemount X-STREAM</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-21-138-01</link>
      <description>&lt;p&gt;The affected products utilize a weak encryption algorithm for storage of sensitive data, which may allow an attacker to more easily obtain credentials used for access.CVE-2021-27457 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). The webserver of the affected products allows unvalidated files to be uploaded, which an attacker could utilize to execute arbitrary code.CVE-2021-27459 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N). The affected webserver applications allow access to stored data that can be obtained by using specially crafted URLs.  CVE-2021-27461 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information. CVE-2021-27463 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). The affected applications do not validate webpage input, which could allow an attacker to inject arbitrary HTML code into a webpage. This would allow an attacker to modify the page and displ…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The affected products utilize a weak encryption algorithm for storage of sensitive data, which may allow an attacker to more easily obtain credentials used for access.CVE-2021-27457 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). The webserver of the affected products allows unvalidated files to be uploaded, which an attacker could utilize to execute arbitrary code.CVE-2021-27459 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N). The affected webserver applications allow access to stored data that can be obtained by using specially crafted URLs.  CVE-2021-27461 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated, allowing an attacker to intercept the cookies and gain access to sensitive information. CVE-2021-27463 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). The affected applications do not validate webpage input, which could allow an attacker to inject arbitrary HTML code into a webpage. This would allow an attacker to modify the page and displ…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-21-138-01</guid>
    </item>
  </channel>
</rss>
