<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 13:28:07 +0000</lastBuildDate>
    <item>
      <title>certfr-2023-avi-0019 — De multiples vulnérabilités ont été découvertes dans les produits SAP.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0019</link>
      <description>certfr-2023-avi-0019</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0019</guid>
    </item>
    <item>
      <title>cnvd-2023-03049</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-03049</link>
      <description>cnvd-2023-03049</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-03049</guid>
    </item>
    <item>
      <title>EUVD-2026-227937</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-227937</link>
      <description>EUVD-2026-227937</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-227937</guid>
    </item>
    <item>
      <title>fkie_cve-2023-0015</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-0015</link>
      <description>&lt;p&gt;In SAP BusinessObjects Business Intelligence Platform (Web Intelligence user interface) - version 420, some calls return json with wrong content type in the header of the response. As a result, a custom application that calls directly the jsp of Web Intelligence DHTML may be vulnerable to XSS attacks. On successful exploitation an attacker can cause limited impact on confidentiality and integrity of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In SAP BusinessObjects Business Intelligence Platform (Web Intelligence user interface) - version 420, some calls return json with wrong content type in the header of the response. As a result, a custom application that calls directly the jsp of Web Intelligence DHTML may be vulnerable to XSS attacks. On successful exploitation an attacker can cause limited impact on confidentiality and integrity of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-0015</guid>
    </item>
    <item>
      <title>GHSA-7v6p-hrxh-28hh</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7v6p-hrxh-28hh</link>
      <description>&lt;p&gt;In SAP BusinessObjects Business Intelligence Platform (Web Intelligence user interface) - version 420, some calls return json with wrong content type in the header of the response. As a result, a custom application that calls directly the jsp of Web Intelligence DHTML may be vulnerable to XSS attacks. On successful exploitation an attacker can cause limited impact on confidentiality and integrity of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In SAP BusinessObjects Business Intelligence Platform (Web Intelligence user interface) - version 420, some calls return json with wrong content type in the header of the response. As a result, a custom application that calls directly the jsp of Web Intelligence DHTML may be vulnerable to XSS attacks. On successful exploitation an attacker can cause limited impact on confidentiality and integrity of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7v6p-hrxh-28hh</guid>
    </item>
    <item>
      <title>gsd-2023-0015</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-0015</link>
      <description>gsd-2023-0015</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-0015</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0040 — SAP Patchday Januar 2023</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0040</link>
      <description>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, vertrauliche Informationen offenzulegen, einen Cross-Site-Scripting-Angriff durchzuführen und Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, vertrauliche Informationen offenzulegen, einen Cross-Site-Scripting-Angriff durchzuführen und Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0040</guid>
    </item>
  </channel>
</rss>
