<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 18:38:01 +0000</lastBuildDate>
    <item>
      <title>CVE-2019-25254 — KYOCERA Net Admin 3.4.0906 Cross-Site Request Forgery via User Administration</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2019-25254</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; KYOCERA Corporation KYOCERA Net Admin&lt;/p&gt;
&lt;p&gt;KYOCERA Net Admin 3.4.0906 contains a cross-site request forgery vulnerability that allows attackers to create administrative users without proper request validation. Attackers can craft malicious web pages that automatically submit forms to add new admin accounts with predefined credentials when a logged-in user visits the page.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; KYOCERA Corporation KYOCERA Net Admin&lt;/p&gt;
&lt;p&gt;KYOCERA Net Admin 3.4.0906 contains a cross-site request forgery vulnerability that allows attackers to create administrative users without proper request validation. Attackers can craft malicious web pages that automatically submit forms to add new admin accounts with predefined credentials when a logged-in user visits the page.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2019-25254</guid>
    </item>
  </channel>
</rss>
