<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 14:18:21 +0000</lastBuildDate>
    <item>
      <title>cnvd-2024-46409</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2024-46409</link>
      <description>cnvd-2024-46409</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2024-46409</guid>
    </item>
    <item>
      <title>EUVD-2026-204218</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-204218</link>
      <description>EUVD-2026-204218</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-204218</guid>
    </item>
    <item>
      <title>fkie_cve-2024-47407</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-47407</link>
      <description>&lt;p&gt;A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-47407</guid>
    </item>
    <item>
      <title>GHSA-hc88-rhv5-92jq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-hc88-rhv5-92jq</link>
      <description>&lt;p&gt;A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-hc88-rhv5-92jq</guid>
    </item>
    <item>
      <title>ICSA-24-326-07 — mySCADA myPRO Manager</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-24-326-07</link>
      <description>&lt;p&gt;A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands. An OS Command Injection vulnerability exists within myPRO Manager. A parameter within a command can be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands. The web application uses a weak authentication mechanism to verify that a request is coming from an authenticated and authorized resource. The administrative interface listens by default on all interfaces on a TCP port and does not require authentication when being accessed The backend does not sufficiently verify the user-controlled filename parameter which makes it possible for an attacker to perform a path traversal attack and retrieve arbitrary files from the file system&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands. An OS Command Injection vulnerability exists within myPRO Manager. A parameter within a command can be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands. The web application uses a weak authentication mechanism to verify that a request is coming from an authenticated and authorized resource. The administrative interface listens by default on all interfaces on a TCP port and does not require authentication when being accessed The backend does not sufficiently verify the user-controlled filename parameter which makes it possible for an attacker to perform a path traversal attack and retrieve arbitrary files from the file system&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-24-326-07</guid>
    </item>
  </channel>
</rss>
