<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 08:52:40 +0000</lastBuildDate>
    <item>
      <title>certfr-2023-avi-0301 — De multiples vulnérabilités ont été découvertes dans les produits SAP.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0301</link>
      <description>certfr-2023-avi-0301</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0301</guid>
    </item>
    <item>
      <title>EUVD-2026-214287</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-214287</link>
      <description>EUVD-2026-214287</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-214287</guid>
    </item>
    <item>
      <title>fkie_cve-2023-24527</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-24527</link>
      <description>&lt;p&gt;SAP NetWeaver AS Java for Deploy Service - version 7.5, does not perform any access control checks for functionalities that require user identity enabling an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access a service which will enable them to access but not modify server settings and data with no effect on availability and integrity.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SAP NetWeaver AS Java for Deploy Service - version 7.5, does not perform any access control checks for functionalities that require user identity enabling an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access a service which will enable them to access but not modify server settings and data with no effect on availability and integrity.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-24527</guid>
    </item>
    <item>
      <title>GHSA-pj4g-9wgx-cch4</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-pj4g-9wgx-cch4</link>
      <description>&lt;p&gt;SAP NetWeaver AS Java for Deploy Service - version 7.5, does not perform any access control checks for functionalities that require user identity enabling an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access a service which will enable them to access but not modify server settings and data with no effect on availability and integrity.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SAP NetWeaver AS Java for Deploy Service - version 7.5, does not perform any access control checks for functionalities that require user identity enabling an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access a service which will enable them to access but not modify server settings and data with no effect on availability and integrity.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-pj4g-9wgx-cch4</guid>
    </item>
    <item>
      <title>gsd-2023-24527</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-24527</link>
      <description>gsd-2023-24527</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-24527</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0904 — SAP Patchday April 2023</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0904</link>
      <description>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen, Informationen offenzulegen, Dateien zu manipulieren, einen Denial of Service Zustand herbeizuführen oder Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen, Informationen offenzulegen, Dateien zu manipulieren, einen Denial of Service Zustand herbeizuführen oder Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0904</guid>
    </item>
  </channel>
</rss>
