<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 11:06:01 +0000</lastBuildDate>
    <item>
      <title>CVE-2024-4299 — HGiga iSherlock - Command Injection</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2024-4299</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; HGiga iSherlock 4.5, HGiga iSherlock 5.5, hgiga isherlock&lt;/p&gt;
&lt;p&gt;The system configuration interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter special characters in certain function parameters, allowing remote attackers with administrative privileges to exploit this vulnerability for Command Injection attacks, enabling execution of arbitrary system commands.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; HGiga iSherlock 4.5, HGiga iSherlock 5.5, hgiga isherlock&lt;/p&gt;
&lt;p&gt;The system configuration interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter special characters in certain function parameters, allowing remote attackers with administrative privileges to exploit this vulnerability for Command Injection attacks, enabling execution of arbitrary system commands.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2024-4299</guid>
    </item>
  </channel>
</rss>
