<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 22:47:58 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-09107</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-09107</link>
      <description>bdu:2024-09107</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-09107</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0833 — De multiples vulnérabilités ont été découvertes dans les produits Cisco. Certaines d'entre elles permettent à un attaqu…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0833</link>
      <description>certfr-2024-avi-0833</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0833</guid>
    </item>
    <item>
      <title>cisco-sa-rv34x-privesc-rce-qE33TCms — Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers Privilege Escalation and Remote Comm…</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-rv34x-privesc-rce-qe33tcms</link>
      <description>&lt;p&gt;Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to elevate privileges and execute arbitrary commands on the underlying operating system of an affected device.&#13;
&#13;
For more information about these vulnerabilities, see the Details [&amp;#34;#details&amp;#34;] section of this advisory.&#13;
&#13;
Cisco has not released and will not release software updates that address these vulnerabilities because the affected products are past their respective dates for End of Software Maintenance Releases. The Cisco Product Security Incident Response Team (PSIRT) will continue to evaluate and disclose security vulnerabilities that affect these products until they reach their respective Last Dates of Support.&#13;
&#13;
There are no workarounds that address these vulnerabilities.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to elevate privileges and execute arbitrary commands on the underlying operating system of an affected device.&#13;
&#13;
For more information about these vulnerabilities, see the Details [&amp;#34;#details&amp;#34;] section of this advisory.&#13;
&#13;
Cisco has not released and will not release software updates that address these vulnerabilities because the affected products are past their respective dates for End of Software Maintenance Releases. The Cisco Product Security Incident Response Team (PSIRT) will continue to evaluate and disclose security vulnerabilities that affect these products until they reach their respective Last Dates of Support.&#13;
&#13;
There are no workarounds that address these vulnerabilities.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-rv34x-privesc-rce-qe33tcms</guid>
    </item>
    <item>
      <title>EUVD-2026-191382</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-191382</link>
      <description>EUVD-2026-191382</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-191382</guid>
    </item>
    <item>
      <title>fkie_cve-2024-20470</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-20470</link>
      <description>&lt;p&gt;A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. In order to exploit this vulnerability, the attacker must have valid admin credentials.&#13;
&#13;
This vulnerability exists because the web-based management interface does not sufficiently validate user-supplied input. An attacker could exploit this vulnerability by sending crafted HTTP input to an affected device. A successful exploit could allow the attacker to execute arbitrary code as the root user on the underlying operating system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. In order to exploit this vulnerability, the attacker must have valid admin credentials.&#13;
&#13;
This vulnerability exists because the web-based management interface does not sufficiently validate user-supplied input. An attacker could exploit this vulnerability by sending crafted HTTP input to an affected device. A successful exploit could allow the attacker to execute arbitrary code as the root user on the underlying operating system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-20470</guid>
    </item>
    <item>
      <title>GHSA-3745-3c7x-hjqq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3745-3c7x-hjqq</link>
      <description>&lt;p&gt;A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. In order to exploit this vulnerability, the attacker must have valid admin credentials.&lt;/p&gt;
&lt;p&gt;This vulnerability exists because the web-based management interface does not sufficiently validate user-supplied input. An attacker could exploit this vulnerability by sending crafted HTTP input to an affected device. A successful exploit could allow the attacker to execute arbitrary code as the root user on the underlying operating system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. In order to exploit this vulnerability, the attacker must have valid admin credentials.&lt;/p&gt;
&lt;p&gt;This vulnerability exists because the web-based management interface does not sufficiently validate user-supplied input. An attacker could exploit this vulnerability by sending crafted HTTP input to an affected device. A successful exploit could allow the attacker to execute arbitrary code as the root user on the underlying operating system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3745-3c7x-hjqq</guid>
    </item>
    <item>
      <title>gsd-2024-20470</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-20470</link>
      <description>gsd-2024-20470</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-20470</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-3073 — Cisco Small Business: Mehrere Schwachstellen ermöglichen Privilegieneskalation</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3073</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Cisco Small Business ausnutzen, um seine Privilegien zu erhöhen, beliebige Befehle auszuführen und einen Denial of Service-Zustand zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Cisco Small Business ausnutzen, um seine Privilegien zu erhöhen, beliebige Befehle auszuführen und einen Denial of Service-Zustand zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3073</guid>
    </item>
  </channel>
</rss>
