<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 09:05:09 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-07886</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-07886</link>
      <description>bdu:2023-07886</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-07886</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0935 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;les produits Siemens&lt;/span&gt;. Certaines d'entr…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0935</link>
      <description>certfr-2023-avi-0935</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0935</guid>
    </item>
    <item>
      <title>cnvd-2023-86339</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-86339</link>
      <description>cnvd-2023-86339</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-86339</guid>
    </item>
    <item>
      <title>EUVD-2026-209564</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-209564</link>
      <description>EUVD-2026-209564</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-209564</guid>
    </item>
    <item>
      <title>fkie_cve-2023-46601</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-46601</link>
      <description>&lt;p&gt;A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in making the SQLServer connection. This could allow an attacker to query the database directly to access information that the user should not have access to.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in making the SQLServer connection. This could allow an attacker to query the database directly to access information that the user should not have access to.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-46601</guid>
    </item>
    <item>
      <title>GHSA-3w26-3x62-f3gq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3w26-3x62-f3gq</link>
      <description>&lt;p&gt;A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in making the SQLServer connection. This could allow an attacker to query the database directly to access information that the user should not have access to.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in making the SQLServer connection. This could allow an attacker to query the database directly to access information that the user should not have access to.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3w26-3x62-f3gq</guid>
    </item>
    <item>
      <title>gsd-2023-46601</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-46601</link>
      <description>gsd-2023-46601</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-46601</guid>
    </item>
    <item>
      <title>ICSA-23-320-09 — Siemens COMOS</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-320-09</link>
      <description>&lt;p&gt;MPXJ through 8.1.3 allows XXE attacks. This affects the GanttProjectReader and PhoenixReader components. common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations. Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files. Unchecked input data from a crafted JPG file leads to memory corruption. An attacker can leverage this vulnerability to execute code in the context of the current process. Open Design Alliance Drawings SDK (all versions prior to 2023.2) is vulnerable&#13;
to an out-of-bounds read when rendering DWG files after they are opened in the recovery mode. This could allow an attacker to execute code in the context of the current process. Open Design Alliance Drawings SDK (all versions prior to 2023.3) is vulnerable to an out-of-bounds read when reading DWG files in a recovery mode. This could allow an attacker to execute code in the context of the current process. Open Design Alliance Drawings SDK (all  versions prior to 2023.3) is vulnerable to an out-of-bounds read when reading a DWG file with invalid vertex number in a recovery mode. This could allow an attacker to execute code in the context of the current process. Integer overflow in PDFium library used in COMOS allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. Use after free in PDFium library used in COMOS allowed a remote attacker…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MPXJ through 8.1.3 allows XXE attacks. This affects the GanttProjectReader and PhoenixReader components. common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations. Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files. Unchecked input data from a crafted JPG file leads to memory corruption. An attacker can leverage this vulnerability to execute code in the context of the current process. Open Design Alliance Drawings SDK (all versions prior to 2023.2) is vulnerable&#13;
to an out-of-bounds read when rendering DWG files after they are opened in the recovery mode. This could allow an attacker to execute code in the context of the current process. Open Design Alliance Drawings SDK (all versions prior to 2023.3) is vulnerable to an out-of-bounds read when reading DWG files in a recovery mode. This could allow an attacker to execute code in the context of the current process. Open Design Alliance Drawings SDK (all  versions prior to 2023.3) is vulnerable to an out-of-bounds read when reading a DWG file with invalid vertex number in a recovery mode. This could allow an attacker to execute code in the context of the current process. Integer overflow in PDFium library used in COMOS allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. Use after free in PDFium library used in COMOS allowed a remote attacker…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-320-09</guid>
    </item>
  </channel>
</rss>
