<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:11:51 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-08268</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-08268</link>
      <description>bdu:2025-08268</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-08268</guid>
    </item>
    <item>
      <title>cnvd-2025-16632</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-16632</link>
      <description>cnvd-2025-16632</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-16632</guid>
    </item>
    <item>
      <title>EUVD-2026-246957</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-246957</link>
      <description>EUVD-2026-246957</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-246957</guid>
    </item>
    <item>
      <title>fkie_cve-2025-40736</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-40736</link>
      <description>&lt;p&gt;A vulnerability has been identified in SINEC NMS (All versions &amp;lt; V4.0). The affected application exposes an endpoint that allows an unauthorized modification of administrative credentials. This could allow an unauthenticated attacker to reset the superadmin password and gain full control of the application (ZDI-CAN-26569).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SINEC NMS (All versions &amp;lt; V4.0). The affected application exposes an endpoint that allows an unauthorized modification of administrative credentials. This could allow an unauthenticated attacker to reset the superadmin password and gain full control of the application (ZDI-CAN-26569).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-40736</guid>
    </item>
    <item>
      <title>GHSA-5w39-m9v9-2j2j</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5w39-m9v9-2j2j</link>
      <description>&lt;p&gt;A vulnerability has been identified in SINEC NMS (All versions &amp;lt; V4.0). The affected application exposes an endpoint that allows an unauthorized modification of administrative credentials. This could allow an unauthenticated attacker to reset the superadmin password and gain full control of the application (ZDI-CAN-26569).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SINEC NMS (All versions &amp;lt; V4.0). The affected application exposes an endpoint that allows an unauthorized modification of administrative credentials. This could allow an unauthenticated attacker to reset the superadmin password and gain full control of the application (ZDI-CAN-26569).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5w39-m9v9-2j2j</guid>
    </item>
    <item>
      <title>ICSA-25-191-01 — Siemens SINEC NMS</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-25-191-01</link>
      <description>&lt;p&gt;The affected devices are vulnerable to SQL injection. This could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database. The affected application exposes an endpoint that allows an unauthorized modification of administrative credentials. This could allow an unauthenticated attacker to reset the superadmin password and gain full control of the application (ZDI-CAN-26569). The affected application does not properly validate file paths when extracting uploaded ZIP files. This could allow an attacker to write arbitrary files to restricted locations and potentially execute code with elevated privileges (ZDI-CAN-26571). The affected application does not properly validate file paths when extracting uploaded ZIP files. This could allow an attacker to write arbitrary files to restricted locations and potentially execute code with elevated privileges (ZDI-CAN-26572).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The affected devices are vulnerable to SQL injection. This could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database. The affected application exposes an endpoint that allows an unauthorized modification of administrative credentials. This could allow an unauthenticated attacker to reset the superadmin password and gain full control of the application (ZDI-CAN-26569). The affected application does not properly validate file paths when extracting uploaded ZIP files. This could allow an attacker to write arbitrary files to restricted locations and potentially execute code with elevated privileges (ZDI-CAN-26571). The affected application does not properly validate file paths when extracting uploaded ZIP files. This could allow an attacker to write arbitrary files to restricted locations and potentially execute code with elevated privileges (ZDI-CAN-26572).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-25-191-01</guid>
    </item>
    <item>
      <title>NCSC-2025-0211 — Kwetsbaarheden verholpen in Siemens producten</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2025-0211</link>
      <description>NCSC-2025-0211</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2025-0211</guid>
    </item>
  </channel>
</rss>
