<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 02:01:22 +0000</lastBuildDate>
    <item>
      <title>certfr-2023-avi-0301 — De multiples vulnérabilités ont été découvertes dans les produits SAP.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0301</link>
      <description>certfr-2023-avi-0301</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0301</guid>
    </item>
    <item>
      <title>EUVD-2026-214282</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-214282</link>
      <description>EUVD-2026-214282</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-214282</guid>
    </item>
    <item>
      <title>fkie_cve-2023-27497</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-27497</link>
      <description>&lt;p&gt;Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker to execute malicious scripts on all connected Diagnostics Agents running on Windows. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker to execute malicious scripts on all connected Diagnostics Agents running on Windows. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-27497</guid>
    </item>
    <item>
      <title>GHSA-h9h4-rp86-rvq6</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h9h4-rp86-rvq6</link>
      <description>&lt;p&gt;Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker to execute malicious scripts on all connected Diagnostics Agents running on Windows. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker to execute malicious scripts on all connected Diagnostics Agents running on Windows. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h9h4-rp86-rvq6</guid>
    </item>
    <item>
      <title>gsd-2023-27497</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-27497</link>
      <description>gsd-2023-27497</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-27497</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0904 — SAP Patchday April 2023</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0904</link>
      <description>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen, Informationen offenzulegen, Dateien zu manipulieren, einen Denial of Service Zustand herbeizuführen oder Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen, Informationen offenzulegen, Dateien zu manipulieren, einen Denial of Service Zustand herbeizuführen oder Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0904</guid>
    </item>
  </channel>
</rss>
