<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 23:50:55 +0000</lastBuildDate>
    <item>
      <title>certfr-2024-avi-0554 — De multiples vulnérabilités ont été découvertes dans les produits SAP. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0554</link>
      <description>certfr-2024-avi-0554</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0554</guid>
    </item>
    <item>
      <title>cnvd-2024-35653</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2024-35653</link>
      <description>cnvd-2024-35653</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2024-35653</guid>
    </item>
    <item>
      <title>EUVD-2026-6205</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-6205</link>
      <description>EUVD-2026-6205</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-6205</guid>
    </item>
    <item>
      <title>fkie_cve-2024-39598</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-39598</link>
      <description>&lt;p&gt;SAP CRM (WebClient UI Framework) allows an
authenticated attacker to enumerate accessible HTTP endpoints in the internal
network by specially crafting HTTP requests. On successful exploitation this
can result in information disclosure. It has no impact on integrity and
availability of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SAP CRM (WebClient UI Framework) allows an
authenticated attacker to enumerate accessible HTTP endpoints in the internal
network by specially crafting HTTP requests. On successful exploitation this
can result in information disclosure. It has no impact on integrity and
availability of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-39598</guid>
    </item>
    <item>
      <title>GHSA-v2gf-qrv9-w74g</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-v2gf-qrv9-w74g</link>
      <description>&lt;p&gt;SAP CRM (WebClient UI Framework) allows an
authenticated attacker to enumerate accessible HTTP endpoints in the internal
network by specially crafting HTTP requests. On successful exploitation this
can result in information disclosure. It has no impact on integrity and
availability of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SAP CRM (WebClient UI Framework) allows an
authenticated attacker to enumerate accessible HTTP endpoints in the internal
network by specially crafting HTTP requests. On successful exploitation this
can result in information disclosure. It has no impact on integrity and
availability of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-v2gf-qrv9-w74g</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1551 — SAP Software: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1551</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um seine Privilegien zu erhöhen, Cross-Site-Scripting (XSS)-Angriffe durchzuführen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand erzeugen, vertrauliche Informationen offenzulegen oder Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um seine Privilegien zu erhöhen, Cross-Site-Scripting (XSS)-Angriffe durchzuführen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand erzeugen, vertrauliche Informationen offenzulegen oder Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1551</guid>
    </item>
  </channel>
</rss>
