<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 00:30:00 +0000</lastBuildDate>
    <item>
      <title>certfr-2023-avi-0301 — De multiples vulnérabilités ont été découvertes dans les produits SAP.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0301</link>
      <description>certfr-2023-avi-0301</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0301</guid>
    </item>
    <item>
      <title>EUVD-2026-214243</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-214243</link>
      <description>EUVD-2026-214243</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-214243</guid>
    </item>
    <item>
      <title>fkie_cve-2023-27897</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-27897</link>
      <description>&lt;p&gt;In SAP CRM - versions 700, 701, 702, 712, 713, an attacker who is authenticated with a non-administrative role and a common remote execution authorization can use a vulnerable interface to execute an application function to perform actions which they would not normally be permitted to perform. Depending on the function executed, the attack can can have limited impact on confidentiality and integrity of non-critical user or application data and application availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In SAP CRM - versions 700, 701, 702, 712, 713, an attacker who is authenticated with a non-administrative role and a common remote execution authorization can use a vulnerable interface to execute an application function to perform actions which they would not normally be permitted to perform. Depending on the function executed, the attack can can have limited impact on confidentiality and integrity of non-critical user or application data and application availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-27897</guid>
    </item>
    <item>
      <title>GHSA-5558-5q6p-4jgw</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5558-5q6p-4jgw</link>
      <description>&lt;p&gt;In SAP CRM - versions 700, 701, 702, 712, 713, an attacker who is authenticated with a non-administrative role and a common remote execution authorization can use a vulnerable interface to execute an application function to perform actions which they would not normally be permitted to perform. Depending on the function executed, the attack can can have limited impact on confidentiality and integrity of non-critical user or application data and application availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In SAP CRM - versions 700, 701, 702, 712, 713, an attacker who is authenticated with a non-administrative role and a common remote execution authorization can use a vulnerable interface to execute an application function to perform actions which they would not normally be permitted to perform. Depending on the function executed, the attack can can have limited impact on confidentiality and integrity of non-critical user or application data and application availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5558-5q6p-4jgw</guid>
    </item>
    <item>
      <title>gsd-2023-27897</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-27897</link>
      <description>gsd-2023-27897</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-27897</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0904 — SAP Patchday April 2023</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0904</link>
      <description>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen, Informationen offenzulegen, Dateien zu manipulieren, einen Denial of Service Zustand herbeizuführen oder Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen, Informationen offenzulegen, Dateien zu manipulieren, einen Denial of Service Zustand herbeizuführen oder Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0904</guid>
    </item>
  </channel>
</rss>
