<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:06:34 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-0408 — De multiples vulnérabilités ont été découvertes dans les produits Juniper Networks. Certaines d'entre elles permettent…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0408</link>
      <description>certfr-2026-avi-0408</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0408</guid>
    </item>
    <item>
      <title>EUVD-2026-290949</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-290949</link>
      <description>EUVD-2026-290949</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-290949</guid>
    </item>
    <item>
      <title>fkie_cve-2026-33784</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33784</link>
      <description>&lt;p&gt;A Use of Default Password vulnerability in the Juniper Networks&lt;/p&gt;
&lt;p&gt;Support Insights (JSI)&lt;/p&gt;
&lt;p&gt;Virtual Lightweight Collector (vLWC) allows an unauthenticated, network-based attacker to take full control of the device.&lt;/p&gt;
&lt;p&gt;vLWC software images ship with an initial password for a high privileged account. A change of this password is not enforced during the provisioning of the software, which can make full access to the system by unauthorized actors possible.This issue affects all versions of vLWC before 3.0.94.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A Use of Default Password vulnerability in the Juniper Networks&lt;/p&gt;
&lt;p&gt;Support Insights (JSI)&lt;/p&gt;
&lt;p&gt;Virtual Lightweight Collector (vLWC) allows an unauthenticated, network-based attacker to take full control of the device.&lt;/p&gt;
&lt;p&gt;vLWC software images ship with an initial password for a high privileged account. A change of this password is not enforced during the provisioning of the software, which can make full access to the system by unauthorized actors possible.This issue affects all versions of vLWC before 3.0.94.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-33784</guid>
    </item>
    <item>
      <title>GHSA-g6hm-r7f2-4j2f</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-g6hm-r7f2-4j2f</link>
      <description>&lt;p&gt;A Use of Default Password vulnerability in the Juniper Networks&lt;/p&gt;
&lt;p&gt;Support Insights (JSI)&lt;/p&gt;
&lt;p&gt;Virtual Lightweight Collector (vLWC) allows an unauthenticated, network-based attacker to take full control of the device.&lt;/p&gt;
&lt;p&gt;vLWC software images ship with an initial password for a high privileged account. A change of this password is not enforced during the provisioning of the software, which can make full access to the system by unauthorized actors possible.This issue affects all versions of vLWC before 3.0.94.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A Use of Default Password vulnerability in the Juniper Networks&lt;/p&gt;
&lt;p&gt;Support Insights (JSI)&lt;/p&gt;
&lt;p&gt;Virtual Lightweight Collector (vLWC) allows an unauthenticated, network-based attacker to take full control of the device.&lt;/p&gt;
&lt;p&gt;vLWC software images ship with an initial password for a high privileged account. A change of this password is not enforced during the provisioning of the software, which can make full access to the system by unauthorized actors possible.This issue affects all versions of vLWC before 3.0.94.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-g6hm-r7f2-4j2f</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1022 — Juniper Patchday April 2026: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1022</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Juniper Apstra, Junos OS, Junos OS Evolved und Junos Space ausnutzen, um erweiterte Berechtigungen – sogar Root-Rechte – zu erlangen, beliebigen Code auszuführen – auch mit erweiterten Berechtigungen –, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Cross-Site-Scripting-Angriffe durchzuführen oder Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Juniper Apstra, Junos OS, Junos OS Evolved und Junos Space ausnutzen, um erweiterte Berechtigungen – sogar Root-Rechte – zu erlangen, beliebigen Code auszuführen – auch mit erweiterten Berechtigungen –, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, Cross-Site-Scripting-Angriffe durchzuführen oder Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1022</guid>
    </item>
  </channel>
</rss>
