<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 12:45:34 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-06477</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-06477</link>
      <description>bdu:2024-06477</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-06477</guid>
    </item>
    <item>
      <title>EUVD-2026-159425</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-159425</link>
      <description>EUVD-2026-159425</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-159425</guid>
    </item>
    <item>
      <title>fkie_cve-2024-42001</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-42001</link>
      <description>&lt;p&gt;An improper authentication vulnerability affecting Vonets&lt;/p&gt;
&lt;p&gt;industrial wifi bridge relays and wifi bridge repeaters, software versions 
3.3.23.6.9 and prior enables an unauthenticated remote attacker to 
bypass authentication via a specially crafted direct request when 
another user has an active session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An improper authentication vulnerability affecting Vonets&lt;/p&gt;
&lt;p&gt;industrial wifi bridge relays and wifi bridge repeaters, software versions 
3.3.23.6.9 and prior enables an unauthenticated remote attacker to 
bypass authentication via a specially crafted direct request when 
another user has an active session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-42001</guid>
    </item>
    <item>
      <title>GHSA-mcm9-5x7f-2h95</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mcm9-5x7f-2h95</link>
      <description>&lt;p&gt;An improper authentication vulnerability affecting Vonets&lt;/p&gt;
&lt;p&gt;industrial wifi bridge relays and wifi bridge repeaters, software versions 
3.3.23.6.9 and prior enables an unauthenticated remote attacker to 
bypass authentication via a specially crafted direct request when 
another user has an active session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An improper authentication vulnerability affecting Vonets&lt;/p&gt;
&lt;p&gt;industrial wifi bridge relays and wifi bridge repeaters, software versions 
3.3.23.6.9 and prior enables an unauthenticated remote attacker to 
bypass authentication via a specially crafted direct request when 
another user has an active session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mcm9-5x7f-2h95</guid>
    </item>
    <item>
      <title>ICSA-24-214-08 — Vonets WiFi Bridges</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-24-214-08</link>
      <description>&lt;p&gt;Use of Hard-coded Credentials vulnerability affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to bypass authentication using hard-coded administrator credentials. These accounts cannot be disabled.  Improper Access Control vulnerability affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to bypass authentication and factory reset the device via unprotected goform endpoints.  A Directory Traversal vulnerability affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to read arbitrary files and bypass authentication.  Multiple OS Command Injection vulnerabilities affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters software versions 3.3.23.6.9 and prior, enable an authenticated remote attacker to execute arbitrary OS commands via various endpoint parameters.  Improper Check or Handling of Exceptional Conditions vulnerability affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters software versions 3.3.23.6.9 and prior, enable an unauthenticated remote attacker to cause a Denial-of-Service (DoS). A specially-crafted HTTP request to preauthentication resources can crash the service.  Stack-Based Buffer Overflow vulnerabilities affectin…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Use of Hard-coded Credentials vulnerability affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to bypass authentication using hard-coded administrator credentials. These accounts cannot be disabled.  Improper Access Control vulnerability affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to bypass authentication and factory reset the device via unprotected goform endpoints.  A Directory Traversal vulnerability affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker to read arbitrary files and bypass authentication.  Multiple OS Command Injection vulnerabilities affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters software versions 3.3.23.6.9 and prior, enable an authenticated remote attacker to execute arbitrary OS commands via various endpoint parameters.  Improper Check or Handling of Exceptional Conditions vulnerability affecting Vonets Industrial WiFi Bridge Relays and WiFi Bridge Repeaters software versions 3.3.23.6.9 and prior, enable an unauthenticated remote attacker to cause a Denial-of-Service (DoS). A specially-crafted HTTP request to preauthentication resources can crash the service.  Stack-Based Buffer Overflow vulnerabilities affectin…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-24-214-08</guid>
    </item>
  </channel>
</rss>
