<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 18:23:23 +0000</lastBuildDate>
    <item>
      <title>cnvd-2018-15425</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-15425</link>
      <description>cnvd-2018-15425</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-15425</guid>
    </item>
    <item>
      <title>EUVD-2026-60828</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-60828</link>
      <description>EUVD-2026-60828</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-60828</guid>
    </item>
    <item>
      <title>fkie_cve-2018-0593</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-0593</link>
      <description>&lt;p&gt;Untrusted search path vulnerability in the installer of Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Untrusted search path vulnerability in the installer of Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-0593</guid>
    </item>
    <item>
      <title>GHSA-wc29-wrhx-vppg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wc29-wrhx-vppg</link>
      <description>&lt;p&gt;Untrusted search path vulnerability in the installer of Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Untrusted search path vulnerability in the installer of Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wc29-wrhx-vppg</guid>
    </item>
    <item>
      <title>gsd-2018-0593</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-0593</link>
      <description>gsd-2018-0593</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-0593</guid>
    </item>
    <item>
      <title>jvndb-2018-000049</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2018-000049</link>
      <description>&lt;p&gt;Multiple Windows applications and installers provided by Microsoft contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries in the same directory where applications and/or installers reside (CWE-427).&#13;
Microsoft states that the root cause of this vulnerability is &amp;#34;Application Directory (App Dir) DLL planting&amp;#34; and attacks exploiting this vulnerability are limited, thus there is no plan to release any security updates to address this issue.&#13;
&#13;
For details, refer to &amp;#34;Application Directory (App Dir) DLL planting&amp;#34; released by Microsoft.&#13;
&#13;
Following researchers reported respective vulnerabilities to IPA.&#13;
JPCERT/CC coordinated with the developer under Information Security Early Warning partnership.&#13;
&#13;
CVE-2018-0592, CVE-2018-0593, CVE-2018-0596&#13;
Takashi Yoshikawa of Mitsui Bussan Secure Directions, Inc.&#13;
&#13;
CVE-2018-0594&#13;
BlackWingCat of Pink Flying Whale&#13;
&#13;
CVE-2018-0595, CVE-2018-0597&#13;
Eili Masami&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple Windows applications and installers provided by Microsoft contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries in the same directory where applications and/or installers reside (CWE-427).&#13;
Microsoft states that the root cause of this vulnerability is &amp;#34;Application Directory (App Dir) DLL planting&amp;#34; and attacks exploiting this vulnerability are limited, thus there is no plan to release any security updates to address this issue.&#13;
&#13;
For details, refer to &amp;#34;Application Directory (App Dir) DLL planting&amp;#34; released by Microsoft.&#13;
&#13;
Following researchers reported respective vulnerabilities to IPA.&#13;
JPCERT/CC coordinated with the developer under Information Security Early Warning partnership.&#13;
&#13;
CVE-2018-0592, CVE-2018-0593, CVE-2018-0596&#13;
Takashi Yoshikawa of Mitsui Bussan Secure Directions, Inc.&#13;
&#13;
CVE-2018-0594&#13;
BlackWingCat of Pink Flying Whale&#13;
&#13;
CVE-2018-0595, CVE-2018-0597&#13;
Eili Masami&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2018-000049</guid>
    </item>
  </channel>
</rss>
