<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:30:26 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-07050</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-07050</link>
      <description>bdu:2024-07050</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-07050</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0671 — De multiples vulnérabilités ont été découvertes dans les produits SAP. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0671</link>
      <description>certfr-2024-avi-0671</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0671</guid>
    </item>
    <item>
      <title>EUVD-2026-158530</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-158530</link>
      <description>EUVD-2026-158530</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-158530</guid>
    </item>
    <item>
      <title>fkie_cve-2024-42374</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-42374</link>
      <description>&lt;p&gt;BEx Web Java Runtime Export Web Service does not
sufficiently validate an XML document accepted from an untrusted source. An
attacker can retrieve information from the SAP ADS system and exhaust the
number of XMLForm service which makes the SAP ADS rendering (PDF creation)
unavailable. This affects the confidentiality and availability of the
application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;BEx Web Java Runtime Export Web Service does not
sufficiently validate an XML document accepted from an untrusted source. An
attacker can retrieve information from the SAP ADS system and exhaust the
number of XMLForm service which makes the SAP ADS rendering (PDF creation)
unavailable. This affects the confidentiality and availability of the
application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-42374</guid>
    </item>
    <item>
      <title>GHSA-r82q-4998-95r2</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-r82q-4998-95r2</link>
      <description>&lt;p&gt;BEx Web Java Runtime Export Web Service does not
sufficiently validate an XML document accepted from an untrusted source. An
attacker can retrieve information from the SAP ADS system and exhaust the
number of XMLForm service which makes the SAP ADS rendering (PDF creation)
unavailable. This affects the confidentiality and availability of the
application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;BEx Web Java Runtime Export Web Service does not
sufficiently validate an XML document accepted from an untrusted source. An
attacker can retrieve information from the SAP ADS system and exhaust the
number of XMLForm service which makes the SAP ADS rendering (PDF creation)
unavailable. This affects the confidentiality and availability of the
application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-r82q-4998-95r2</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1818 — SAP Security Patch Day – August 2024</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1818</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in der SAP-Software ausnutzen, um seine Privilegien zu erweitern, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Dateien zu löschen oder zu manipulieren oder einen Cross Site Scripting-Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in der SAP-Software ausnutzen, um seine Privilegien zu erweitern, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Dateien zu löschen oder zu manipulieren oder einen Cross Site Scripting-Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1818</guid>
    </item>
  </channel>
</rss>
