<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 09:33:40 +0000</lastBuildDate>
    <item>
      <title>certa-2013-avi-145 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Oracle Solaris&lt;/span&gt;. Certaines d'entre elles…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2013-avi-145</link>
      <description>certa-2013-avi-145</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2013-avi-145</guid>
    </item>
    <item>
      <title>EUVD-2026-113321</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-113321</link>
      <description>EUVD-2026-113321</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-113321</guid>
    </item>
    <item>
      <title>fkie_cve-2012-5885</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2012-5885</link>
      <description>&lt;p&gt;The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2012-5885</guid>
    </item>
    <item>
      <title>GHSA-99rf-92v6-cwx4 — Improper Access Control in Apache Tomcat</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-99rf-92v6-cwx4</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka client nonce) values instead of nonce (aka server nonce) and nc (aka nonce-count) values, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, a different vulnerability than CVE-2011-1184.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-99rf-92v6-cwx4</guid>
    </item>
    <item>
      <title>gsd-2012-5885</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2012-5885</link>
      <description>gsd-2012-5885</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2012-5885</guid>
    </item>
    <item>
      <title>RHSA-2013:0265 — Red Hat Security Advisory: tomcat6 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2013:0265</link>
      <description>&lt;p&gt;tomcat: HTTP NIO connector OOM DoS via a request with large headers Tomcat/JBoss Web - Bypass of CSRF prevention filter Tomcat - Denial Of Service when using NIO+SSL+sendfile tomcat: three DIGEST authentication implementation issues tomcat: three DIGEST authentication implementation issues tomcat: three DIGEST authentication implementation issues&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;tomcat: HTTP NIO connector OOM DoS via a request with large headers Tomcat/JBoss Web - Bypass of CSRF prevention filter Tomcat - Denial Of Service when using NIO+SSL+sendfile tomcat: three DIGEST authentication implementation issues tomcat: three DIGEST authentication implementation issues tomcat: three DIGEST authentication implementation issues&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2013:0265</guid>
    </item>
  </channel>
</rss>
