<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 02:24:10 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-02601</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-02601</link>
      <description>bdu:2024-02601</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-02601</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0270 — Une vulnérabilité a été découverte dans Cisco Nexus Dashboard Fabric
Controller. Elle permet à un attaquant de provoque…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0270</link>
      <description>certfr-2024-avi-0270</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0270</guid>
    </item>
    <item>
      <title>cisco-sa-ndfc-dir-trav-SSn3AYDw — Cisco Nexus Dashboard Fabric Controller Plug and Play Arbitrary File Read Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-ndfc-dir-trav-ssn3aydw</link>
      <description>&lt;p&gt;A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated, remote attacker to read arbitrary files.&#13;
&#13;
This vulnerability is due to an unauthenticated provisioning web server. An attacker could exploit this vulnerability through direct web requests to the provisioning server. A successful exploit could allow the attacker to read sensitive files in the PnP container that could facilitate further attacks on the PnP infrastructure.&#13;
&#13;
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated, remote attacker to read arbitrary files.&#13;
&#13;
This vulnerability is due to an unauthenticated provisioning web server. An attacker could exploit this vulnerability through direct web requests to the provisioning server. A successful exploit could allow the attacker to read sensitive files in the PnP container that could facilitate further attacks on the PnP infrastructure.&#13;
&#13;
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-ndfc-dir-trav-ssn3aydw</guid>
    </item>
    <item>
      <title>EUVD-2026-3647</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-3647</link>
      <description>EUVD-2026-3647</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-3647</guid>
    </item>
    <item>
      <title>fkie_cve-2024-20348</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-20348</link>
      <description>&lt;p&gt;A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated, remote attacker to read arbitrary files.&#13;
&#13; This vulnerability is due to an unauthenticated provisioning web server. An attacker could exploit this vulnerability through direct web requests to the provisioning server. A successful exploit could allow the attacker to read sensitive files in the PnP container that could facilitate further attacks on the PnP infrastructure.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated, remote attacker to read arbitrary files.&#13;
&#13; This vulnerability is due to an unauthenticated provisioning web server. An attacker could exploit this vulnerability through direct web requests to the provisioning server. A successful exploit could allow the attacker to read sensitive files in the PnP container that could facilitate further attacks on the PnP infrastructure.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-20348</guid>
    </item>
    <item>
      <title>GHSA-m7q5-x69w-qc6v</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m7q5-x69w-qc6v</link>
      <description>&lt;p&gt;A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated, remote attacker to read arbitrary files.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to an unauthenticated provisioning web server. An attacker could exploit this vulnerability through direct web requests to the provisioning server. A successful exploit could allow the attacker to read sensitive files in the PnP container that could facilitate further attacks on the PnP infrastructure.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an unauthenticated, remote attacker to read arbitrary files.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to an unauthenticated provisioning web server. An attacker could exploit this vulnerability through direct web requests to the provisioning server. A successful exploit could allow the attacker to read sensitive files in the PnP container that could facilitate further attacks on the PnP infrastructure.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m7q5-x69w-qc6v</guid>
    </item>
    <item>
      <title>gsd-2024-20348</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-20348</link>
      <description>gsd-2024-20348</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-20348</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-0777 — Cisco Nexus Dashboard: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0777</link>
      <description>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Cisco Nexus Dashboard ausnutzen, um beliebigen Programmcode auszuführen, seine Privilegien zu erweitern, Daten zu manipulieren, Sicherheitsvorkehrungen zu umgehen oder Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Cisco Nexus Dashboard ausnutzen, um beliebigen Programmcode auszuführen, seine Privilegien zu erweitern, Daten zu manipulieren, Sicherheitsvorkehrungen zu umgehen oder Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0777</guid>
    </item>
  </channel>
</rss>
