<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 15:50:14 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-13531</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-13531</link>
      <description>bdu:2025-13531</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-13531</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0917 — De multiples vulnérabilités ont été découvertes dans les produits Moxa. Elles permettent à un attaquant de provoquer un…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0917</link>
      <description>certfr-2025-avi-0917</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0917</guid>
    </item>
    <item>
      <title>EUVD-2026-256697</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-256697</link>
      <description>EUVD-2026-256697</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-256697</guid>
    </item>
    <item>
      <title>fkie_cve-2025-1679</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-1679</link>
      <description>&lt;p&gt;Cross-site Scripting has been identified in Moxa’s Ethernet switches, which allows an authenticated administrative attacker to inject malicious scripts to an affected device’s web service that could impact authenticated users interacting with the device’s web interface. This vulnerability is classified as stored cross-site scripting (XSS); attackers inject malicious scripts into the system, and the scripts persist across sessions. There is no impact to the confidentiality, integrity, and availability of the affected device; no loss of availability within any subsequent systems but has some loss of confidentiality and integrity within the subsequent system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cross-site Scripting has been identified in Moxa’s Ethernet switches, which allows an authenticated administrative attacker to inject malicious scripts to an affected device’s web service that could impact authenticated users interacting with the device’s web interface. This vulnerability is classified as stored cross-site scripting (XSS); attackers inject malicious scripts into the system, and the scripts persist across sessions. There is no impact to the confidentiality, integrity, and availability of the affected device; no loss of availability within any subsequent systems but has some loss of confidentiality and integrity within the subsequent system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-1679</guid>
    </item>
    <item>
      <title>GHSA-pfrw-8vrh-4v8w</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-pfrw-8vrh-4v8w</link>
      <description>&lt;p&gt;Cross-site Scripting has been identified in Moxa’s Ethernet switches, which allows an authenticated administrative attacker to inject malicious scripts to an affected device’s web service that could impact authenticated users interacting with the device’s web interface. This vulnerability is classified as stored cross-site scripting (XSS); attackers inject malicious scripts into the system, and the scripts persist across sessions. There is no impact to the confidentiality, integrity, and availability of the affected device; no loss of availability within any subsequent systems but has some loss of confidentiality and integrity within the subsequent system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cross-site Scripting has been identified in Moxa’s Ethernet switches, which allows an authenticated administrative attacker to inject malicious scripts to an affected device’s web service that could impact authenticated users interacting with the device’s web interface. This vulnerability is classified as stored cross-site scripting (XSS); attackers inject malicious scripts into the system, and the scripts persist across sessions. There is no impact to the confidentiality, integrity, and availability of the affected device; no loss of availability within any subsequent systems but has some loss of confidentiality and integrity within the subsequent system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-pfrw-8vrh-4v8w</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2398 — Moxa Switch: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2398</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Moxa Switch ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen und Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Moxa Switch ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen und Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2398</guid>
    </item>
  </channel>
</rss>
