<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 10:50:51 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-230534</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-230534</link>
      <description>EUVD-2026-230534</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-230534</guid>
    </item>
    <item>
      <title>fkie_cve-2022-3186</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-3186</link>
      <description>&lt;p&gt;Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device&amp;#39;s information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device&amp;#39;s information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-3186</guid>
    </item>
    <item>
      <title>GHSA-84p2-3q54-pcv7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-84p2-3q54-pcv7</link>
      <description>&lt;p&gt;Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device&amp;#39;s information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device&amp;#39;s information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-84p2-3q54-pcv7</guid>
    </item>
    <item>
      <title>gsd-2022-3186</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-3186</link>
      <description>gsd-2022-3186</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-3186</guid>
    </item>
    <item>
      <title>ICSA-22-263-03 — Dataprobe iBoot-PDU</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-22-263-03</link>
      <description>&lt;p&gt;A specific function does not sanitize the input provided by the user, which may expose the affected an OS command injection vulnerability. CVE-2022-3183 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). The device�s existing firmware allows unauthenticated users to access an old PHP page vulnerable to directory traversal, which may allow a user to write a file to the webroot directory. CVE-2022-3184 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). The affected product exposes sensitive data concerning the device. CVE-2022-3185 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). The affected product allows an attacker to access the device�s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device&amp;#39;s information. CVE-2022-3186 has been assigned to this vulnerability. A CVSS v3 base score of 8.6 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N). Certain PHP pages only validate when a valid connection is established with the database. However, these PHP pages do not verify the validity of a user. Attackers could leverage this lack of veri…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A specific function does not sanitize the input provided by the user, which may expose the affected an OS command injection vulnerability. CVE-2022-3183 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). The device�s existing firmware allows unauthenticated users to access an old PHP page vulnerable to directory traversal, which may allow a user to write a file to the webroot directory. CVE-2022-3184 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). The affected product exposes sensitive data concerning the device. CVE-2022-3185 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). The affected product allows an attacker to access the device�s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device&amp;#39;s information. CVE-2022-3186 has been assigned to this vulnerability. A CVSS v3 base score of 8.6 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N). Certain PHP pages only validate when a valid connection is established with the database. However, these PHP pages do not verify the validity of a user. Attackers could leverage this lack of veri…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-22-263-03</guid>
    </item>
  </channel>
</rss>
