<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 03:03:44 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-226899</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-226899</link>
      <description>EUVD-2026-226899</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-226899</guid>
    </item>
    <item>
      <title>fkie_cve-2025-0354</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-0354</link>
      <description>&lt;p&gt;Cross-site scripting vulnerability in NEC Corporation Aterm WG2600HS Ver.1.7.2 and earlier, WG2600HP4 Ver.1.4.2 and earlier, WG2600HM4 Ver.1.4.2 and earlier, WG2600HS2 Ver.1.3.2 and earlier, WX3000HP Ver.2.4.2 and earlier and WX4200D5 Ver.1.2.4 and earlier allows a attacker to inject an arbitrary script via the network.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cross-site scripting vulnerability in NEC Corporation Aterm WG2600HS Ver.1.7.2 and earlier, WG2600HP4 Ver.1.4.2 and earlier, WG2600HM4 Ver.1.4.2 and earlier, WG2600HS2 Ver.1.3.2 and earlier, WX3000HP Ver.2.4.2 and earlier and WX4200D5 Ver.1.2.4 and earlier allows a attacker to inject an arbitrary script via the network.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-0354</guid>
    </item>
    <item>
      <title>GHSA-qgh2-59hq-68f3</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qgh2-59hq-68f3</link>
      <description>&lt;p&gt;Cross-site scripting vulnerability in NEC Corporation Aterm WG2600HS Ver.1.7.2 and earlier, WG2600HP4 Ver.1.4.2 and earlier, WG2600HM4 Ver.1.4.2 and earlier, WG2600HS2 Ver.1.3.2 and earlier, WX3000HP Ver.2.4.2 and earlier and WX4200D5 Ver.1.2.4 and earlier allows a attacker to inject an arbitrary script via the internet.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cross-site scripting vulnerability in NEC Corporation Aterm WG2600HS Ver.1.7.2 and earlier, WG2600HP4 Ver.1.4.2 and earlier, WG2600HM4 Ver.1.4.2 and earlier, WG2600HS2 Ver.1.3.2 and earlier, WX3000HP Ver.2.4.2 and earlier and WX4200D5 Ver.1.2.4 and earlier allows a attacker to inject an arbitrary script via the internet.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qgh2-59hq-68f3</guid>
    </item>
    <item>
      <title>jvndb-2025-000002</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2025-000002</link>
      <description>&lt;p&gt;Aterm series provided by NEC Corporation contains multiple vulnerabilities listed below.&#13;
&#13;
&amp;lt;ul&amp;gt;&#13;
&amp;lt;li&amp;gt;Stored Cross-site Scripting (CWE-79) - CVE-2025-0354&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Missing Authentication for Critical Function (CWE-306) - CVE-2025-0355&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;OOS Command Injection (CWE-78) - CVE-2025-0356&amp;lt;/li&amp;gt;&#13;
&amp;lt;/ul&amp;gt;&#13;
&#13;
CVE-2025-0354, CVE-2025-0355&#13;
Takayuki Sasaki and Katsunari Yoshioka of Yokohama National University reported these vulnerabilities to JPCERT/CC.&#13;
JPCERT/CC coordinated with the developer.&#13;
&#13;
CVE-2025-0356&#13;
Kakeru Kajihara of NTT Security Holdings reported this vulnerability to JPCERT/CC.&#13;
JPCERT/CC coordinated with the developer.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Aterm series provided by NEC Corporation contains multiple vulnerabilities listed below.&#13;
&#13;
&amp;lt;ul&amp;gt;&#13;
&amp;lt;li&amp;gt;Stored Cross-site Scripting (CWE-79) - CVE-2025-0354&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;Missing Authentication for Critical Function (CWE-306) - CVE-2025-0355&amp;lt;/li&amp;gt;&#13;
&amp;lt;li&amp;gt;OOS Command Injection (CWE-78) - CVE-2025-0356&amp;lt;/li&amp;gt;&#13;
&amp;lt;/ul&amp;gt;&#13;
&#13;
CVE-2025-0354, CVE-2025-0355&#13;
Takayuki Sasaki and Katsunari Yoshioka of Yokohama National University reported these vulnerabilities to JPCERT/CC.&#13;
JPCERT/CC coordinated with the developer.&#13;
&#13;
CVE-2025-0356&#13;
Kakeru Kajihara of NTT Security Holdings reported this vulnerability to JPCERT/CC.&#13;
JPCERT/CC coordinated with the developer.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2025-000002</guid>
    </item>
  </channel>
</rss>
