<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 04:30:21 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-07060</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-07060</link>
      <description>bdu:2024-07060</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-07060</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0452 — De multiples vulnérabilités ont été découvertes dans StormShield SSL VPN Client. Elles permettent à un attaquant de pro…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0452</link>
      <description>certfr-2024-avi-0452</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0452</guid>
    </item>
    <item>
      <title>EUVD-2026-159704</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-159704</link>
      <description>EUVD-2026-159704</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-159704</guid>
    </item>
    <item>
      <title>fkie_cve-2024-27459</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-27459</link>
      <description>&lt;p&gt;The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary code with more privileges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary code with more privileges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-27459</guid>
    </item>
    <item>
      <title>GHSA-f6v5-hjxr-p24j</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f6v5-hjxr-p24j</link>
      <description>&lt;p&gt;The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary code with more privileges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary code with more privileges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f6v5-hjxr-p24j</guid>
    </item>
    <item>
      <title>gsd-2024-27459</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-27459</link>
      <description>gsd-2024-27459</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-27459</guid>
    </item>
    <item>
      <title>ICSA-25-072-10 — Siemens SINEMA Remote Connect Client</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-25-072-10</link>
      <description>&lt;p&gt;tap-windows6 driver version 9.26 and earlier does not properly &#13;
check the size data of incomming write operations which an attacker can &#13;
use to overflow memory buffers, resulting in a bug check and potentially&#13;
 arbitrary code execution in kernel space If an attacker with SeImeprsonatePrivilege manages to create a namedpipe server with a name matching that used by the &amp;#34;Interactive Service&amp;#34;, user interfaces such as OpenVPN-GUI connecting to it could allow the attacker to impersonate the user running the UI. The interactive service in OpenVPN 2.6.9 and earlier allows the OpenVPN service pipe to be accessed remotely, which allows a remote attacker to interact with the privileged OpenVPN interactive service. The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary code with more privileges. OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service. OpenVPN from 2.6.0 through 2.6.10 in a server role accepts multiple exit notifications from authenticated clients which will extend the validity of a closing session&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;tap-windows6 driver version 9.26 and earlier does not properly &#13;
check the size data of incomming write operations which an attacker can &#13;
use to overflow memory buffers, resulting in a bug check and potentially&#13;
 arbitrary code execution in kernel space If an attacker with SeImeprsonatePrivilege manages to create a namedpipe server with a name matching that used by the &amp;#34;Interactive Service&amp;#34;, user interfaces such as OpenVPN-GUI connecting to it could allow the attacker to impersonate the user running the UI. The interactive service in OpenVPN 2.6.9 and earlier allows the OpenVPN service pipe to be accessed remotely, which allows a remote attacker to interact with the privileged OpenVPN interactive service. The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary code with more privileges. OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service. OpenVPN from 2.6.0 through 2.6.10 in a server role accepts multiple exit notifications from authenticated clients which will extend the validity of a closing session&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-25-072-10</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-0688 — OpenVPN: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0688</link>
      <description>&lt;p&gt;Ein Angreifer kann eine Schwachstelle in OpenVPN ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen oder seine Privilegien zu erweitern.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann eine Schwachstelle in OpenVPN ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen oder seine Privilegien zu erweitern.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0688</guid>
    </item>
  </channel>
</rss>
