<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 12:31:44 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-191797</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-191797</link>
      <description>EUVD-2026-191797</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-191797</guid>
    </item>
    <item>
      <title>fkie_cve-2023-40706</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-40706</link>
      <description>&lt;p&gt;There is no limit on the number of login attempts in the web server for the SNAP PAC S1 Firmware version R10.3b. This could allow for a brute-force attack on the built-in web server login.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;There is no limit on the number of login attempts in the web server for the SNAP PAC S1 Firmware version R10.3b. This could allow for a brute-force attack on the built-in web server login.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-40706</guid>
    </item>
    <item>
      <title>GHSA-245g-9f78-5jxc</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-245g-9f78-5jxc</link>
      <description>&lt;p&gt;There is no limit on the number of login attempts in the web server for the SNAP PAC S1 Firmware version R10.3b. This could allow for a brute-force attack on the built-in web server login.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;There is no limit on the number of login attempts in the web server for the SNAP PAC S1 Firmware version R10.3b. This could allow for a brute-force attack on the built-in web server login.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-245g-9f78-5jxc</guid>
    </item>
    <item>
      <title>gsd-2023-40706</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-40706</link>
      <description>gsd-2023-40706</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-40706</guid>
    </item>
    <item>
      <title>ICSA-23-236-02 — OPTO 22 SNAP PAC S1</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-236-02</link>
      <description>&lt;p&gt;There is no limit on the number of login attempts. This could allow a brute force attack on the built-in web server login. There are no requirements for setting a complex password, which could allow a successful brute force attack if users don&amp;#39;t setup complex credentials.  The File Transfer Protocol (FTP) port is open by default. This could allow an adversary to access some device files.  An adversary could crash the entire device by sending large quantity of ICMP requests if the controller has the built-in web server enabled but not completely set-up and configured. An adversary could cause a continuous restart loop to the entire device by sending large quantity of HTTP GET requests if the controller has the built-in web server enabled but does not have the built-in web server completely set-up and configured.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;There is no limit on the number of login attempts. This could allow a brute force attack on the built-in web server login. There are no requirements for setting a complex password, which could allow a successful brute force attack if users don&amp;#39;t setup complex credentials.  The File Transfer Protocol (FTP) port is open by default. This could allow an adversary to access some device files.  An adversary could crash the entire device by sending large quantity of ICMP requests if the controller has the built-in web server enabled but not completely set-up and configured. An adversary could cause a continuous restart loop to the entire device by sending large quantity of HTTP GET requests if the controller has the built-in web server enabled but does not have the built-in web server completely set-up and configured.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-236-02</guid>
    </item>
  </channel>
</rss>
