<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 22:16:39 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-07583</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-07583</link>
      <description>bdu:2024-07583</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-07583</guid>
    </item>
    <item>
      <title>cnvd-2026-11793</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2026-11793</link>
      <description>cnvd-2026-11793</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2026-11793</guid>
    </item>
    <item>
      <title>EUVD-2026-189538</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-189538</link>
      <description>EUVD-2026-189538</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-189538</guid>
    </item>
    <item>
      <title>fkie_cve-2024-28948</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-28948</link>
      <description>&lt;p&gt;Advantech ADAM-5630 contains a cross-site request forgery (CSRF) vulnerability. It allows an attacker to partly circumvent the same 
origin policy, which is designed to prevent different websites from 
interfering with each other.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Advantech ADAM-5630 contains a cross-site request forgery (CSRF) vulnerability. It allows an attacker to partly circumvent the same 
origin policy, which is designed to prevent different websites from 
interfering with each other.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-28948</guid>
    </item>
    <item>
      <title>GHSA-64jg-5jxr-f8cr</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-64jg-5jxr-f8cr</link>
      <description>&lt;p&gt;Advantech ADAM-5630 contains a cross-site request forgery (CSRF) vulnerability. It allows an attacker to partly circumvent the same 
origin policy, which is designed to prevent different websites from 
interfering with each other.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Advantech ADAM-5630 contains a cross-site request forgery (CSRF) vulnerability. It allows an attacker to partly circumvent the same 
origin policy, which is designed to prevent different websites from 
interfering with each other.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-64jg-5jxr-f8cr</guid>
    </item>
    <item>
      <title>ICSA-24-270-02 — Advantech ADAM 5630</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-24-270-02</link>
      <description>&lt;p&gt;Cookies of authenticated users remain as active valid cookies when a session is closed. Forging requests with a legitimate cookie, even if the session was terminated, allows an unauthorized attacker to act with the same level of privileges of the legitimate user. Cross-site request forgery (CSRF) is a web security vulnerability that allows an attacker to induce users to perform actions that they do not intend to perform. It allows an attacker to partly circumvent the same origin policy, which is designed to prevent different websites from interfering with each other. User credentials are shared in plain text, between the device and the user source device, during the login process. The device has built-in commands that can be executed without authenticating the user. These commands allow for restarting the operating system, rebooting the hardware, and stopping the execution. The commands can be sent to a simple HTTP request and are executed by the device automatically, without discrimination of origin or level of privileges of the user sending the commands.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cookies of authenticated users remain as active valid cookies when a session is closed. Forging requests with a legitimate cookie, even if the session was terminated, allows an unauthorized attacker to act with the same level of privileges of the legitimate user. Cross-site request forgery (CSRF) is a web security vulnerability that allows an attacker to induce users to perform actions that they do not intend to perform. It allows an attacker to partly circumvent the same origin policy, which is designed to prevent different websites from interfering with each other. User credentials are shared in plain text, between the device and the user source device, during the login process. The device has built-in commands that can be executed without authenticating the user. These commands allow for restarting the operating system, rebooting the hardware, and stopping the execution. The commands can be sent to a simple HTTP request and are executed by the device automatically, without discrimination of origin or level of privileges of the user sending the commands.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-24-270-02</guid>
    </item>
  </channel>
</rss>
