<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 20:27:15 +0000</lastBuildDate>
    <item>
      <title>certfr-2023-avi-0737 — De multiples vulnérabilités ont été découvertes dans les produits SAP.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0737</link>
      <description>certfr-2023-avi-0737</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0737</guid>
    </item>
    <item>
      <title>EUVD-2026-188131</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-188131</link>
      <description>EUVD-2026-188131</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-188131</guid>
    </item>
    <item>
      <title>fkie_cve-2023-40625</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-40625</link>
      <description>&lt;p&gt;S4CORE (Manage Purchase Contracts App) - versions 102, 103, 104, 105, 106, 107, does not perform necessary authorization checks for an authenticated user. This could allow an attacker to perform unintended actions resulting in escalation of privileges which has low impact on confidentiality and integrity with no impact on availibility of the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;S4CORE (Manage Purchase Contracts App) - versions 102, 103, 104, 105, 106, 107, does not perform necessary authorization checks for an authenticated user. This could allow an attacker to perform unintended actions resulting in escalation of privileges which has low impact on confidentiality and integrity with no impact on availibility of the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-40625</guid>
    </item>
    <item>
      <title>GHSA-hjg5-r3cj-8vc3</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-hjg5-r3cj-8vc3</link>
      <description>&lt;p&gt;S4CORE (Manage Purchase Contracts App) - versions 102, 103, 104, 105, 106, 107, does not perform necessary authorization checks for an authenticated user. This could allow an attacker to perform unintended actions resulting in escalation of privileges which has low impact on confidentiality and integrity with no impact on availibility of the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;S4CORE (Manage Purchase Contracts App) - versions 102, 103, 104, 105, 106, 107, does not perform necessary authorization checks for an authenticated user. This could allow an attacker to perform unintended actions resulting in escalation of privileges which has low impact on confidentiality and integrity with no impact on availibility of the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-hjg5-r3cj-8vc3</guid>
    </item>
    <item>
      <title>gsd-2023-40625</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-40625</link>
      <description>gsd-2023-40625</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-40625</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2309 — SAP Patchday September 2023</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2309</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen oder manipulieren, einen Cross-Site-Scripting-Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen oder manipulieren, einen Cross-Site-Scripting-Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2309</guid>
    </item>
  </channel>
</rss>
