<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 00:12:59 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-08857</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-08857</link>
      <description>bdu:2023-08857</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-08857</guid>
    </item>
    <item>
      <title>EUVD-2026-8341</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-8341</link>
      <description>EUVD-2026-8341</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-8341</guid>
    </item>
    <item>
      <title>fkie_cve-2023-27990</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-27990</link>
      <description>&lt;p&gt;The cross-site scripting (XSS) vulnerability in Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN firmware versions 4.16 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow an authenticated attacker with administrator privileges to store malicious scripts in a vulnerable device. A successful XSS attack could then result in the stored malicious scripts being executed when the user visits the Logs page of the GUI on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The cross-site scripting (XSS) vulnerability in Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN firmware versions 4.16 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow an authenticated attacker with administrator privileges to store malicious scripts in a vulnerable device. A successful XSS attack could then result in the stored malicious scripts being executed when the user visits the Logs page of the GUI on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-27990</guid>
    </item>
    <item>
      <title>GHSA-6qw9-cqm2-283v</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6qw9-cqm2-283v</link>
      <description>&lt;p&gt;The XSS vulnerability in Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN firmware versions 4.16 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow an authenticated attacker with administrator privileges to store malicious scripts in a vulnerable device. A successful XSS attack could then result in the stored malicious scripts being executed when the user visits the Logs page of the GUI on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The XSS vulnerability in Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN firmware versions 4.16 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow an authenticated attacker with administrator privileges to store malicious scripts in a vulnerable device. A successful XSS attack could then result in the stored malicious scripts being executed when the user visits the Logs page of the GUI on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6qw9-cqm2-283v</guid>
    </item>
    <item>
      <title>gsd-2023-27990</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-27990</link>
      <description>gsd-2023-27990</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-27990</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1070 — Zyxel Firewalls: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1070</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Zyxel Firewall ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen, einen Denial of Service zu verursachen, einen Cross Site Scripting Angriff durchzuführen oder die Konfiguration zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Zyxel Firewall ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen, einen Denial of Service zu verursachen, einen Cross Site Scripting Angriff durchzuführen oder die Konfiguration zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1070</guid>
    </item>
  </channel>
</rss>
