<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 10:13:11 +0000</lastBuildDate>
    <item>
      <title>cnvd-2021-103632</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-103632</link>
      <description>cnvd-2021-103632</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-103632</guid>
    </item>
    <item>
      <title>EUVD-2026-27948</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-27948</link>
      <description>EUVD-2026-27948</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-27948</guid>
    </item>
    <item>
      <title>fkie_cve-2021-32498</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-32498</link>
      <description>&lt;p&gt;SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the pathname of the emulator and use path traversal to run an arbitrary executable located on the host system. When the user starts the emulator from SOPAS ET the corresponding executable will be started instead of the emulator&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the pathname of the emulator and use path traversal to run an arbitrary executable located on the host system. When the user starts the emulator from SOPAS ET the corresponding executable will be started instead of the emulator&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-32498</guid>
    </item>
    <item>
      <title>GHSA-wprm-j8wf-78v5</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wprm-j8wf-78v5</link>
      <description>&lt;p&gt;SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the pathname of the emulator and use path traversal to run an arbitrary executable located on the host system. When the user starts the emulator from SOPAS ET the corresponding executable will be started instead of the emulator&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the pathname of the emulator and use path traversal to run an arbitrary executable located on the host system. When the user starts the emulator from SOPAS ET the corresponding executable will be started instead of the emulator&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wprm-j8wf-78v5</guid>
    </item>
    <item>
      <title>gsd-2021-32498</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-32498</link>
      <description>gsd-2021-32498</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-32498</guid>
    </item>
    <item>
      <title>SCA-2021-0004 — Vulnerabilities in SICK SOPAS ET</title>
      <link>https://cve.radiocsirt.org/vuln/sca-2021-0004</link>
      <description>&lt;p&gt;SDD files might contain an executable file that will be listed as the Emulators inside SOPAS ET. When 
a user starts the emulator, the executable is run without further checks. Attackers could wrap any 
executable file into an SDD and provide this to a SOPAS ET user. When installing the SDD the user 
may not be aware about the executable inside of the SDD. When an SDD contains an emulator, the emulator location is part of the SDD manifest. Attackers could manipulate this location and use path traversal to target an arbitrary executable located on the host system. When the user starts the emulator from SOPAS ET, the corresponding executable will be started instead of the emulator. The command line arguments that are passed to an emulator when starting it via SOPAS ET, are part 
of the SDD manifest. Attackers could manipulate the arguments to pass in any value to the 
executable. In combination with CVE-2021-32498 the attacker could target an arbitrary executable 
with any arguments on the host system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SDD files might contain an executable file that will be listed as the Emulators inside SOPAS ET. When 
a user starts the emulator, the executable is run without further checks. Attackers could wrap any 
executable file into an SDD and provide this to a SOPAS ET user. When installing the SDD the user 
may not be aware about the executable inside of the SDD. When an SDD contains an emulator, the emulator location is part of the SDD manifest. Attackers could manipulate this location and use path traversal to target an arbitrary executable located on the host system. When the user starts the emulator from SOPAS ET, the corresponding executable will be started instead of the emulator. The command line arguments that are passed to an emulator when starting it via SOPAS ET, are part 
of the SDD manifest. Attackers could manipulate the arguments to pass in any value to the 
executable. In combination with CVE-2021-32498 the attacker could target an arbitrary executable 
with any arguments on the host system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sca-2021-0004</guid>
    </item>
  </channel>
</rss>
