<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 18:01:56 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-04058</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-04058</link>
      <description>bdu:2023-04058</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-04058</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0453 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0453</link>
      <description>certfr-2023-avi-0453</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0453</guid>
    </item>
    <item>
      <title>cnvd-2023-48550</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-48550</link>
      <description>cnvd-2023-48550</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-48550</guid>
    </item>
    <item>
      <title>EUVD-2026-262877</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-262877</link>
      <description>EUVD-2026-262877</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-262877</guid>
    </item>
    <item>
      <title>fkie_cve-2023-31238</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-31238</link>
      <description>&lt;p&gt;A vulnerability has been identified in SICAM P850 (7KG8500-0AA00-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA00-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA10-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA10-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA30-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA30-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA01-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA01-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA02-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA02-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA11-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA11-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA12-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA12-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA31-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA31-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA32-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA32-2AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA00-0AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA00-2AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA10-0AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA10-2AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA30-0AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA30-2AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8551-0AA01-0AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8551-0AA01-2AA0) (All versions &amp;lt; V3.11), SICA…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SICAM P850 (7KG8500-0AA00-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA00-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA10-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA10-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA30-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8500-0AA30-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA01-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA01-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA02-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA02-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA11-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA11-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA12-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA12-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA31-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA31-2AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA32-0AA0) (All versions &amp;lt; V3.11), SICAM P850 (7KG8501-0AA32-2AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA00-0AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA00-2AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA10-0AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA10-2AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA30-0AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8550-0AA30-2AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8551-0AA01-0AA0) (All versions &amp;lt; V3.11), SICAM P855 (7KG8551-0AA01-2AA0) (All versions &amp;lt; V3.11), SICA…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-31238</guid>
    </item>
    <item>
      <title>GHSA-3gq4-h9hg-9898</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3gq4-h9hg-9898</link>
      <description>&lt;p&gt;A vulnerability has been identified in POWER METER SICAM Q200 family (All versions &amp;lt; V2.70). Affected devices are missing cookie protection flags when using the default settings. An attacker who gains access to a session token can use it to impersonate a legitimate application user.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in POWER METER SICAM Q200 family (All versions &amp;lt; V2.70). Affected devices are missing cookie protection flags when using the default settings. An attacker who gains access to a session token can use it to impersonate a legitimate application user.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3gq4-h9hg-9898</guid>
    </item>
    <item>
      <title>gsd-2023-31238</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-31238</link>
      <description>gsd-2023-31238</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-31238</guid>
    </item>
    <item>
      <title>ICSA-23-166-03 — Siemens SICAM Q200 Devices</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-166-03</link>
      <description>&lt;p&gt;Affected devices do not renew the session cookie after login/logout and also accept user defined session cookies.  An attacker could overwrite the stored session cookie of a user. After the victim logged in, the attacker is given access to the user&amp;#39;s account through the activated session. Affected devices do not properly validate the Language-parameter in requests to the web interface on port  443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. Affected devices do not properly validate the RecordType-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. Affected devices do not properly validate the EndTime-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. The web interface of the affected devices are vulnerable to Cross-Site Request Forgery attacks. By tricking an authenticated victim user to click a malicious link, an attacker could perform arbitrary actions on the device on behalf of the victim user. Affected devices are missing cookie protection flags when using the default settings. An attacker who gains access to a session token can use it to impersonate a legi…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Affected devices do not renew the session cookie after login/logout and also accept user defined session cookies.  An attacker could overwrite the stored session cookie of a user. After the victim logged in, the attacker is given access to the user&amp;#39;s account through the activated session. Affected devices do not properly validate the Language-parameter in requests to the web interface on port  443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. Affected devices do not properly validate the RecordType-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. Affected devices do not properly validate the EndTime-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device. The web interface of the affected devices are vulnerable to Cross-Site Request Forgery attacks. By tricking an authenticated victim user to click a malicious link, an attacker could perform arbitrary actions on the device on behalf of the victim user. Affected devices are missing cookie protection flags when using the default settings. An attacker who gains access to a session token can use it to impersonate a legi…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-166-03</guid>
    </item>
    <item>
      <title>SSA-201498 — SSA-201498: Multiple Vulnerabilities in the Web Server of SICAM P850 and SICAM P855 Devices Before V3.11</title>
      <link>https://cve.radiocsirt.org/vuln/ssa-201498</link>
      <description>&lt;p&gt;The web interface of the affected devices are vulnerable to Cross-Site Request Forgery attacks. By tricking an authenticated victim user to click a malicious link, an attacker could perform arbitrary actions on the device on behalf of the victim user. Affected devices are missing cookie protection flags when using the default settings. An attacker who gains access to a session token can use it to impersonate a legitimate application user.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The web interface of the affected devices are vulnerable to Cross-Site Request Forgery attacks. By tricking an authenticated victim user to click a malicious link, an attacker could perform arbitrary actions on the device on behalf of the victim user. Affected devices are missing cookie protection flags when using the default settings. An attacker who gains access to a session token can use it to impersonate a legitimate application user.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ssa-201498</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1431 — Siemens SICAM: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1431</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Siemens SICAM ausnutzen, um Sicherheitsvorkehrungen zu umgehen und Code auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Siemens SICAM ausnutzen, um Sicherheitsvorkehrungen zu umgehen und Code auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1431</guid>
    </item>
  </channel>
</rss>
