<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 19:57:44 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-07392</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-07392</link>
      <description>bdu:2023-07392</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-07392</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0737 — De multiples vulnérabilités ont été découvertes dans les produits SAP.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0737</link>
      <description>certfr-2023-avi-0737</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0737</guid>
    </item>
    <item>
      <title>EUVD-2026-188687</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-188687</link>
      <description>EUVD-2026-188687</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-188687</guid>
    </item>
    <item>
      <title>fkie_cve-2023-42472</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-42472</link>
      <description>&lt;p&gt;Due to insufficient file type validation, SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface) - version 420, allows a report creator to upload files from local system into the report over the network. When uploading the image file, an authenticated attacker could intercept the request, modify the content type and the extension to read and modify sensitive data causing a high impact on confidentiality and integrity of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Due to insufficient file type validation, SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface) - version 420, allows a report creator to upload files from local system into the report over the network. When uploading the image file, an authenticated attacker could intercept the request, modify the content type and the extension to read and modify sensitive data causing a high impact on confidentiality and integrity of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-42472</guid>
    </item>
    <item>
      <title>GHSA-7m6v-v5x3-rc3h</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7m6v-v5x3-rc3h</link>
      <description>&lt;p&gt;Due to insufficient file type validation, SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface) - version 420, allows a report creator to upload files from local system into the report over the network. When uploading the image file, an authenticated attacker could intercept the request, modify the content type and the extension to read and modify sensitive data causing a high impact on confidentiality and integrity of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Due to insufficient file type validation, SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface) - version 420, allows a report creator to upload files from local system into the report over the network. When uploading the image file, an authenticated attacker could intercept the request, modify the content type and the extension to read and modify sensitive data causing a high impact on confidentiality and integrity of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7m6v-v5x3-rc3h</guid>
    </item>
    <item>
      <title>gsd-2023-42472</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-42472</link>
      <description>gsd-2023-42472</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-42472</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2309 — SAP Patchday September 2023</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2309</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen oder manipulieren, einen Cross-Site-Scripting-Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen oder manipulieren, einen Cross-Site-Scripting-Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2309</guid>
    </item>
  </channel>
</rss>
