<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 04:22:28 +0000</lastBuildDate>
    <item>
      <title>certfr-2022-avi-216 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-216</link>
      <description>certfr-2022-avi-216</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-216</guid>
    </item>
    <item>
      <title>cnvd-2022-17791</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2022-17791</link>
      <description>cnvd-2022-17791</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2022-17791</guid>
    </item>
    <item>
      <title>EUVD-2026-232095</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-232095</link>
      <description>EUVD-2026-232095</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-232095</guid>
    </item>
    <item>
      <title>fkie_cve-2022-24282</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-24282</link>
      <description>&lt;p&gt;A vulnerability has been identified in SINEC NMS (All versions &amp;gt;= V1.0.3 &amp;lt; V2.0), SINEC NMS (All versions &amp;lt; V1.0.3), SINEMA Server V14 (All versions). The affected system allows to upload JSON objects that are deserialized to Java objects. Due to insecure deserialization of user-supplied content by the affected software, a privileged attacker could exploit this vulnerability by sending a maliciously crafted serialized Java object. This could allow the attacker to execute arbitrary code on the device with root privileges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SINEC NMS (All versions &amp;gt;= V1.0.3 &amp;lt; V2.0), SINEC NMS (All versions &amp;lt; V1.0.3), SINEMA Server V14 (All versions). The affected system allows to upload JSON objects that are deserialized to Java objects. Due to insecure deserialization of user-supplied content by the affected software, a privileged attacker could exploit this vulnerability by sending a maliciously crafted serialized Java object. This could allow the attacker to execute arbitrary code on the device with root privileges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-24282</guid>
    </item>
    <item>
      <title>GHSA-h9pr-8j9g-2rhq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h9pr-8j9g-2rhq</link>
      <description>&lt;p&gt;A vulnerability has been identified in SINEC NMS (All versions). The affected system allows to upload JSON objects that are deserialized to Java objects. Due to insecure deserialization of user-supplied content by the affected software, a privileged attacker could exploit this vulnerability by sending a maliciously crafted serialized Java object. This could allow the attacker to execute arbitrary code on the device with root privileges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SINEC NMS (All versions). The affected system allows to upload JSON objects that are deserialized to Java objects. Due to insecure deserialization of user-supplied content by the affected software, a privileged attacker could exploit this vulnerability by sending a maliciously crafted serialized Java object. This could allow the attacker to execute arbitrary code on the device with root privileges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h9pr-8j9g-2rhq</guid>
    </item>
    <item>
      <title>gsd-2022-24282</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-24282</link>
      <description>gsd-2022-24282</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-24282</guid>
    </item>
    <item>
      <title>ICSA-22-069-03 — Siemens SINEC NMS</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-22-069-03</link>
      <description>&lt;p&gt;A privileged authenticated attacker could execute arbitrary commands in the local database by sending specially crafted requests to the webserver of the affected application. The affected system allows to upload JSON objects that are deserialized to Java objects. Due to insecure deserialization of user-supplied content by the affected software, a privileged attacker could exploit this vulnerability by sending a maliciously crafted serialized Java object. This could allow the attacker to execute arbitrary code on the device with root privileges. The affected software do not properly check privileges between users during the same web browser session, creating an unintended sphere of control. This could allow an authenticated low privileged user to achieve privilege escalation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A privileged authenticated attacker could execute arbitrary commands in the local database by sending specially crafted requests to the webserver of the affected application. The affected system allows to upload JSON objects that are deserialized to Java objects. Due to insecure deserialization of user-supplied content by the affected software, a privileged attacker could exploit this vulnerability by sending a maliciously crafted serialized Java object. This could allow the attacker to execute arbitrary code on the device with root privileges. The affected software do not properly check privileges between users during the same web browser session, creating an unintended sphere of control. This could allow an authenticated low privileged user to achieve privilege escalation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-22-069-03</guid>
    </item>
  </channel>
</rss>
