<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 10:43:08 +0000</lastBuildDate>
    <item>
      <title>certfr-2023-avi-0935 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;les produits Siemens&lt;/span&gt;. Certaines d'entr…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0935</link>
      <description>certfr-2023-avi-0935</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0935</guid>
    </item>
    <item>
      <title>EUVD-2026-219670</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-219670</link>
      <description>EUVD-2026-219670</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-219670</guid>
    </item>
    <item>
      <title>fkie_cve-2023-2567</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-2567</link>
      <description>&lt;p&gt;A SQL Injection vulnerability has been found in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality.
Authenticated users may be able to execute arbitrary SQL statements on the DBMS used by the web application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A SQL Injection vulnerability has been found in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality.
Authenticated users may be able to execute arbitrary SQL statements on the DBMS used by the web application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-2567</guid>
    </item>
    <item>
      <title>GHSA-c36w-mp78-5hh7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c36w-mp78-5hh7</link>
      <description>&lt;p&gt;A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality, allows an authenticated attacker to execute arbitrary SQL queries on the DBMS used by the web application.
Authenticated users can extract arbitrary information from the DBMS in an uncontrolled way.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality, allows an authenticated attacker to execute arbitrary SQL queries on the DBMS used by the web application.
Authenticated users can extract arbitrary information from the DBMS in an uncontrolled way.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c36w-mp78-5hh7</guid>
    </item>
    <item>
      <title>gsd-2023-2567</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-2567</link>
      <description>gsd-2023-2567</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-2567</guid>
    </item>
    <item>
      <title>ICSA-23-320-14 — Siemens RUGGEDCOM APE1808 Devices</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-320-14</link>
      <description>&lt;p&gt;A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality, allows an authenticated attacker to execute arbitrary SQL queries on the DBMS used by the web application.&#13;
Authenticated users can extract arbitrary information from the DBMS in an uncontrolled way. A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields used in the Asset Intelligence functionality of our IDS, may allow an unauthenticated attacker to execute arbitrary SQL statements on the DBMS used by the web application by sending specially crafted malicious network packets.&#13;
&#13;
Malicious users with extensive knowledge on the underlying system may be able to extract arbitrary information from the DBMS in an uncontrolled way, or to alter its structure and data. A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields used in the Asset Intelligence functionality of our IDS, allows an unauthenticated attacker to crash the IDS module by sending specially crafted malformed network packets.&#13;
&#13;
During the (limited) time window before the IDS module is automatically restarted, network traffic may not be analyzed.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality, allows an authenticated attacker to execute arbitrary SQL queries on the DBMS used by the web application.&#13;
Authenticated users can extract arbitrary information from the DBMS in an uncontrolled way. A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields used in the Asset Intelligence functionality of our IDS, may allow an unauthenticated attacker to execute arbitrary SQL statements on the DBMS used by the web application by sending specially crafted malicious network packets.&#13;
&#13;
Malicious users with extensive knowledge on the underlying system may be able to extract arbitrary information from the DBMS in an uncontrolled way, or to alter its structure and data. A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields used in the Asset Intelligence functionality of our IDS, allows an unauthenticated attacker to crash the IDS module by sending specially crafted malformed network packets.&#13;
&#13;
During the (limited) time window before the IDS module is automatically restarted, network traffic may not be analyzed.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-320-14</guid>
    </item>
    <item>
      <title>NN-2023:9-01 — Authenticated SQL Injection on Query functionality in Guardian/CMC before 22.6.3 and 23.1.0</title>
      <link>https://cve.radiocsirt.org/vuln/nn-2023:9-01</link>
      <description>&lt;p&gt;A SQL Injection vulnerability has been found in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A SQL Injection vulnerability has been found in Nozomi Networks Guardian and CMC, due to improper input validation in certain parameters used in the Query functionality.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/nn-2023:9-01</guid>
    </item>
  </channel>
</rss>
