<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 13:40:09 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-14766</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-14766</link>
      <description>bdu:2025-14766</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-14766</guid>
    </item>
    <item>
      <title>EUVD-2026-261968</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-261968</link>
      <description>EUVD-2026-261968</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-261968</guid>
    </item>
    <item>
      <title>fkie_cve-2025-64129</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-64129</link>
      <description>&lt;p&gt;Zenitel TCIV-3+ is vulnerable to an out-of-bounds write 
vulnerability, which could allow a remote attacker to crash the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Zenitel TCIV-3+ is vulnerable to an out-of-bounds write 
vulnerability, which could allow a remote attacker to crash the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-64129</guid>
    </item>
    <item>
      <title>GHSA-prm5-j94f-rr92</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-prm5-j94f-rr92</link>
      <description>&lt;p&gt;Zenitel TCIV-3+ is vulnerable to an out-of-bounds write 
vulnerability, which could allow a remote attacker to crash the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Zenitel TCIV-3+ is vulnerable to an out-of-bounds write 
vulnerability, which could allow a remote attacker to crash the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-prm5-j94f-rr92</guid>
    </item>
    <item>
      <title>ICSA-25-329-03 — Zenitel TCIV-3+</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-25-329-03</link>
      <description>&lt;p&gt;An OS command injection vulnerability exists due to improper input validation. The application accepts a parameter directly from user input without verifying it is a valid IP address or filtering potentially malicious characters. This could allow an unauthenticated attacker to inject arbitrary commands. An OS command injection vulnerability exists due to insufficient sanitization of user-supplied input. The application accepts parameters that are later incorporated into OS commands without adequate validation. This could allow an unauthenticated attacker to execute arbitrary commands remotely. An OS command injection vulnerability exists due to incomplete validation of user-supplied input. Validation fails to enforce sufficient formatting rules, which could permit attackers to append arbitrary data. This could allow an unauthenticated attacker to inject arbitrary commands. The affected product is vulnerable to an out-of-bounds write vulnerability, which could allow a remote attacker to crash the device. The affected product is vulnerable to a reflected cross-site scripting vulnerability, which could allow a remote attacker to execute arbitrary JavaScript on the victim&amp;#39;s browser.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An OS command injection vulnerability exists due to improper input validation. The application accepts a parameter directly from user input without verifying it is a valid IP address or filtering potentially malicious characters. This could allow an unauthenticated attacker to inject arbitrary commands. An OS command injection vulnerability exists due to insufficient sanitization of user-supplied input. The application accepts parameters that are later incorporated into OS commands without adequate validation. This could allow an unauthenticated attacker to execute arbitrary commands remotely. An OS command injection vulnerability exists due to incomplete validation of user-supplied input. Validation fails to enforce sufficient formatting rules, which could permit attackers to append arbitrary data. This could allow an unauthenticated attacker to inject arbitrary commands. The affected product is vulnerable to an out-of-bounds write vulnerability, which could allow a remote attacker to crash the device. The affected product is vulnerable to a reflected cross-site scripting vulnerability, which could allow a remote attacker to execute arbitrary JavaScript on the victim&amp;#39;s browser.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-25-329-03</guid>
    </item>
  </channel>
</rss>
