<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 19:40:30 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-07199</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-07199</link>
      <description>bdu:2023-07199</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-07199</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0138 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Cisco Security Advisory&lt;/span&gt;. Elles permetten…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0138</link>
      <description>certfr-2023-avi-0138</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0138</guid>
    </item>
    <item>
      <title>cisco-sa-esa-sma-privesc-9DVkFpJ8 — Cisco Email Security Appliance and Cisco Secure Email and Web Manager Vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-esa-sma-privesc-9dvkfpj8</link>
      <description>&lt;p&gt;Multiple vulnerabilities in the web UI and CLI of Cisco Email Security Appliance (ESA) and Cisco Secure Email and Web Manager could allow an authenticated attacker to perform injection attacks or elevate privileges.&#13;
&#13;
For more information about these vulnerabilities, see the Details [&amp;#34;#details&amp;#34;] section of this advisory.&#13;
&#13;
Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities in the web UI and CLI of Cisco Email Security Appliance (ESA) and Cisco Secure Email and Web Manager could allow an authenticated attacker to perform injection attacks or elevate privileges.&#13;
&#13;
For more information about these vulnerabilities, see the Details [&amp;#34;#details&amp;#34;] section of this advisory.&#13;
&#13;
Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-esa-sma-privesc-9dvkfpj8</guid>
    </item>
    <item>
      <title>EUVD-2026-7908</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-7908</link>
      <description>EUVD-2026-7908</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-7908</guid>
    </item>
    <item>
      <title>fkie_cve-2023-20009</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-20009</link>
      <description>&lt;p&gt;A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an authenticated remote attacker and or authenticated local attacker to escalate their privilege level and gain root access. The attacker has to have a valid user credential with at least a [[privilege of operator - validate actual name]].&#13;
&#13; The vulnerability is due to the processing of a specially crafted SNMP configuration file. An attacker could exploit this vulnerability by authenticating to the targeted device and uploading a specially crafted SNMP configuration file that when uploaded could allow for the execution of commands as root. An exploit could allow the attacker to gain root access on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an authenticated remote attacker and or authenticated local attacker to escalate their privilege level and gain root access. The attacker has to have a valid user credential with at least a [[privilege of operator - validate actual name]].&#13;
&#13; The vulnerability is due to the processing of a specially crafted SNMP configuration file. An attacker could exploit this vulnerability by authenticating to the targeted device and uploading a specially crafted SNMP configuration file that when uploaded could allow for the execution of commands as root. An exploit could allow the attacker to gain root access on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-20009</guid>
    </item>
    <item>
      <title>GHSA-rj99-fcj2-r7fw</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-rj99-fcj2-r7fw</link>
      <description>&lt;p&gt;A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an authenticated remote attacker and or authenticated local attacker to escalate their privilege level and gain root access. The attacker has to have a valid user credential with at least a [[privilege of operator - validate actual name]]. The vulnerability is due to the processing of a specially crafted SNMP configuration file. An attacker could exploit this vulnerability by authenticating to the targeted device and uploading a specially crafted SNMP configuration file that when uploaded could allow for the execution of commands as root. An exploit could allow the attacker to gain root access on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an authenticated remote attacker and or authenticated local attacker to escalate their privilege level and gain root access. The attacker has to have a valid user credential with at least a [[privilege of operator - validate actual name]]. The vulnerability is due to the processing of a specially crafted SNMP configuration file. An attacker could exploit this vulnerability by authenticating to the targeted device and uploading a specially crafted SNMP configuration file that when uploaded could allow for the execution of commands as root. An exploit could allow the attacker to gain root access on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-rj99-fcj2-r7fw</guid>
    </item>
    <item>
      <title>gsd-2023-20009</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-20009</link>
      <description>gsd-2023-20009</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-20009</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0399 — Cisco AsyncOS: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0399</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Cisco Email Security Appliance und Cisco AsyncOS ausnutzen, um seine Privilegien zu erhöhen und beliebige Befehle auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Cisco Email Security Appliance und Cisco AsyncOS ausnutzen, um seine Privilegien zu erhöhen und beliebige Befehle auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0399</guid>
    </item>
  </channel>
</rss>
