<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 11:01:07 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-10958</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-10958</link>
      <description>bdu:2024-10958</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-10958</guid>
    </item>
    <item>
      <title>EUVD-2026-197882</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-197882</link>
      <description>EUVD-2026-197882</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-197882</guid>
    </item>
    <item>
      <title>fkie_cve-2024-37570</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-37570</link>
      <description>&lt;p&gt;On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the username and path parameters (sent by an authenticated user) before appending flags to the busybox ftpget command. This leads to $() command execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the username and path parameters (sent by an authenticated user) before appending flags to the busybox ftpget command. This leads to $() command execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-37570</guid>
    </item>
    <item>
      <title>GHSA-683h-wmfw-2p2m</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-683h-wmfw-2p2m</link>
      <description>&lt;p&gt;On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the username and path parameters (sent by an authenticated user) before appending flags to the busybox ftpget command. This leads to $() command execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the username and path parameters (sent by an authenticated user) before appending flags to the busybox ftpget command. This leads to $() command execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-683h-wmfw-2p2m</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1325 — Mitel SIP Phone: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1325</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Mitel SIP Phone ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen oder beliebigen Programmcode auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Mitel SIP Phone ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen oder beliebigen Programmcode auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1325</guid>
    </item>
  </channel>
</rss>
