<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 23:56:47 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-210303</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-210303</link>
      <description>EUVD-2026-210303</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-210303</guid>
    </item>
    <item>
      <title>fkie_cve-2024-28012</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-28012</link>
      <description>&lt;p&gt;Improper authentication vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N, WR8170N, WR8700N, WR8300N, WR8150N, WR4100N, WR4500N, WR8100N, WR8500N, CR2500P, WR8400N, WR8200N, WR1200H, WR7870S, WR6670S, WR7850S, WR6650S, WR6600H, WR7800H, WM3400RN, WM3450RN, WM3500R, WM3600R, WM3800R, WR8166N, MR01LN MR02LN, WG1810HP(JE) and WG1810HP(MF) all versions allows a attacker to execute an arbitrary command with the root privilege via the internet.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper authentication vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N, WR8170N, WR8700N, WR8300N, WR8150N, WR4100N, WR4500N, WR8100N, WR8500N, CR2500P, WR8400N, WR8200N, WR1200H, WR7870S, WR6670S, WR7850S, WR6650S, WR6600H, WR7800H, WM3400RN, WM3450RN, WM3500R, WM3600R, WM3800R, WR8166N, MR01LN MR02LN, WG1810HP(JE) and WG1810HP(MF) all versions allows a attacker to execute an arbitrary command with the root privilege via the internet.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-28012</guid>
    </item>
    <item>
      <title>GHSA-4fwq-rwj5-pm2v</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4fwq-rwj5-pm2v</link>
      <description>&lt;p&gt;Improper authentication vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N, WR8170N, WR8700N, WR8300N, WR8150N, WR4100N, WR4500N, WR8100N, WR8500N, CR2500P, WR8400N, WR8200N, WR1200H, WR7870S, WR6670S, WR7850S, WR6650S, WR6600H, WR7800H, WM3400RN, WM3450RN, WM3500R, WM3600R, WM3800R, WR8166N, MR01LN and MR02LN all versions allows a attacker to execute an arbitrary command with the root privilege via the internet.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper authentication vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N, WR8170N, WR8700N, WR8300N, WR8150N, WR4100N, WR4500N, WR8100N, WR8500N, CR2500P, WR8400N, WR8200N, WR1200H, WR7870S, WR6670S, WR7850S, WR6650S, WR6600H, WR7800H, WM3400RN, WM3450RN, WM3500R, WM3600R, WM3800R, WR8166N, MR01LN and MR02LN all versions allows a attacker to execute an arbitrary command with the root privilege via the internet.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4fwq-rwj5-pm2v</guid>
    </item>
    <item>
      <title>gsd-2024-28012</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-28012</link>
      <description>gsd-2024-28012</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-28012</guid>
    </item>
    <item>
      <title>jvndb-2024-000037</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2024-000037</link>
      <description>&lt;p&gt;Aterm series provided by NEC Corporation contains multiple vulnerabilities listed below.&#13;
&#13;
&amp;lt;ul&amp;gt;&#13;
&amp;lt;li&amp;gt;Incorrect Permission Assignment for Critical Resource (CWE-732) - CVE-2024-28005&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Exposure of Sensitive System Information to an Unauthorized Control Sphere (CWE-497) - CVE-2024-28006&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Incorrect Permission Assignment for Critical Resource (CWE-732) - CVE-2024-28007&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Active Debug Code (CWE-489) - CVE-2024-28008&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Use of Weak Credentials (CWE-1391) - CVE-2024-28009, CVE-2024-28012&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Use of Hard-coded Credentials (CWE-798) - CVE-2024-28010&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Inclusion of Undocumented Features (CWE-1242) - CVE-2024-28011&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Insufficient Session Expiration (CWE-613) - CVE-2024-28013&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Buffer Overflow (CWE-120) - CVE-2024-28014&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;OS Command Injection in the web management console (CWE-78) - CVE-2024-28015&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Exposure of Sensitive System Information to an Unauthorized Control Sphere (CWE-497) - CVE-2024-28016&amp;lt;/li&amp;gt;&#13;
&amp;lt;/ul&amp;gt;&#13;
&#13;
The following people reported the vulnerabilities to IPA.&#13;
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.&#13;
&#13;
CVE-2024-28005, CVE-2024-28008&#13;
Ryo Kashiro, and Katsuhiko Sato, and Takayuki Sasaki, and Katsunari Yoshioka of Yokohama National University&#13;
&#13;
CVE-2024-28006, CVE-2024-28007, CVE-2024-28009, CVE-2024-28010, CVE-2024-28011, CVE-2024-28012&#13;
Ryo Kashiro, and Katsuhiko Sato&#13;
&#13;
CVE-2024-28013&#13;
Yudai Morii, Takaya Noma, Takayuki Sasaki, and Katsunari…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Aterm series provided by NEC Corporation contains multiple vulnerabilities listed below.&#13;
&#13;
&amp;lt;ul&amp;gt;&#13;
&amp;lt;li&amp;gt;Incorrect Permission Assignment for Critical Resource (CWE-732) - CVE-2024-28005&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Exposure of Sensitive System Information to an Unauthorized Control Sphere (CWE-497) - CVE-2024-28006&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Incorrect Permission Assignment for Critical Resource (CWE-732) - CVE-2024-28007&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Active Debug Code (CWE-489) - CVE-2024-28008&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Use of Weak Credentials (CWE-1391) - CVE-2024-28009, CVE-2024-28012&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Use of Hard-coded Credentials (CWE-798) - CVE-2024-28010&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Inclusion of Undocumented Features (CWE-1242) - CVE-2024-28011&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Insufficient Session Expiration (CWE-613) - CVE-2024-28013&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Buffer Overflow (CWE-120) - CVE-2024-28014&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;OS Command Injection in the web management console (CWE-78) - CVE-2024-28015&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Exposure of Sensitive System Information to an Unauthorized Control Sphere (CWE-497) - CVE-2024-28016&amp;lt;/li&amp;gt;&#13;
&amp;lt;/ul&amp;gt;&#13;
&#13;
The following people reported the vulnerabilities to IPA.&#13;
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.&#13;
&#13;
CVE-2024-28005, CVE-2024-28008&#13;
Ryo Kashiro, and Katsuhiko Sato, and Takayuki Sasaki, and Katsunari Yoshioka of Yokohama National University&#13;
&#13;
CVE-2024-28006, CVE-2024-28007, CVE-2024-28009, CVE-2024-28010, CVE-2024-28011, CVE-2024-28012&#13;
Ryo Kashiro, and Katsuhiko Sato&#13;
&#13;
CVE-2024-28013&#13;
Yudai Morii, Takaya Noma, Takayuki Sasaki, and Katsunari…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2024-000037</guid>
    </item>
  </channel>
</rss>
