<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 17:21:51 +0000</lastBuildDate>
    <item>
      <title>CVE-2019-25419 — Comodo Dome Firewall 2.7.0 Stored Cross-Site Scripting via schedule</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2019-25419</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Comodo Dome Firewall&lt;/p&gt;
&lt;p&gt;Comodo Dome Firewall 2.7.0 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the schedule endpoint. Attackers can submit POST requests with JavaScript payloads in the SCHNAME parameter to execute arbitrary code in administrators&amp;#39; browsers when the schedule page is accessed.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Comodo Dome Firewall&lt;/p&gt;
&lt;p&gt;Comodo Dome Firewall 2.7.0 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the schedule endpoint. Attackers can submit POST requests with JavaScript payloads in the SCHNAME parameter to execute arbitrary code in administrators&amp;#39; browsers when the schedule page is accessed.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2019-25419</guid>
    </item>
  </channel>
</rss>
