<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 07:46:25 +0000</lastBuildDate>
    <item>
      <title>certfr-2022-avi-1001 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-1001</link>
      <description>certfr-2022-avi-1001</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-1001</guid>
    </item>
    <item>
      <title>cnvd-2022-75541</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2022-75541</link>
      <description>cnvd-2022-75541</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2022-75541</guid>
    </item>
    <item>
      <title>EUVD-2026-19623</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-19623</link>
      <description>EUVD-2026-19623</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-19623</guid>
    </item>
    <item>
      <title>fkie_cve-2022-43398</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-43398</link>
      <description>&lt;p&gt;A vulnerability has been identified in POWER METER SICAM Q100 (All versions &amp;lt; V2.50), POWER METER SICAM Q100 (All versions &amp;lt; V2.50), POWER METER SICAM Q100 (All versions &amp;lt; V2.50), POWER METER SICAM Q100 (All versions &amp;lt; V2.50). Affected devices do not renew the session cookie after login/logout and also accept user defined session cookies.  An attacker could overwrite the stored session cookie of a user. After the victim logged in, the attacker is given access to the user&amp;#39;s account through the activated session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in POWER METER SICAM Q100 (All versions &amp;lt; V2.50), POWER METER SICAM Q100 (All versions &amp;lt; V2.50), POWER METER SICAM Q100 (All versions &amp;lt; V2.50), POWER METER SICAM Q100 (All versions &amp;lt; V2.50). Affected devices do not renew the session cookie after login/logout and also accept user defined session cookies.  An attacker could overwrite the stored session cookie of a user. After the victim logged in, the attacker is given access to the user&amp;#39;s account through the activated session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-43398</guid>
    </item>
    <item>
      <title>GHSA-fph2-95mp-m2fq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fph2-95mp-m2fq</link>
      <description>&lt;p&gt;A vulnerability has been identified in POWER METER SICAM Q100 (All versions &amp;lt; V2.50), POWER METER SICAM Q100 (All versions &amp;lt; V2.50). Affected devices do not renew the session cookie after login/logout and also accept user defined session cookies. An attacker could overwrite the stored session cookie of a user. After the victim logged in, the attacker is given access to the user&amp;#39;s account through the activated session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in POWER METER SICAM Q100 (All versions &amp;lt; V2.50), POWER METER SICAM Q100 (All versions &amp;lt; V2.50). Affected devices do not renew the session cookie after login/logout and also accept user defined session cookies. An attacker could overwrite the stored session cookie of a user. After the victim logged in, the attacker is given access to the user&amp;#39;s account through the activated session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fph2-95mp-m2fq</guid>
    </item>
    <item>
      <title>gsd-2022-43398</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-43398</link>
      <description>gsd-2022-43398</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-43398</guid>
    </item>
    <item>
      <title>ICSA-22-314-11 — Siemens SICAM Q100</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-22-314-11</link>
      <description>&lt;p&gt;Affected devices do not renew the session cookie after login/logout and also accept user defined session cookies.  An attacker could overwrite the stored session cookie of a user. After the victim logged in, the attacker is given access to the user&amp;#39;s account through the activated session. Affected devices do not properly validate the Language-parameter in requests to the web interface on port  443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. Affected devices do not properly validate the RecordType-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. Affected devices do not properly validate the EndTime-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Affected devices do not renew the session cookie after login/logout and also accept user defined session cookies.  An attacker could overwrite the stored session cookie of a user. After the victim logged in, the attacker is given access to the user&amp;#39;s account through the activated session. Affected devices do not properly validate the Language-parameter in requests to the web interface on port  443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. Affected devices do not properly validate the RecordType-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. Affected devices do not properly validate the EndTime-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-22-314-11</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-1974 — Siemens SICAM: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1974</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter  oder anonymer Angreifer kann mehrere Schwachstellen in Siemens SICAM ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter  oder anonymer Angreifer kann mehrere Schwachstellen in Siemens SICAM ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1974</guid>
    </item>
  </channel>
</rss>
