<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 03:11:28 +0000</lastBuildDate>
    <item>
      <title>CVE-2024-9971 — NewType FlowMaster BPM Plus - SQL Injection</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2024-9971</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NewType FlowMaster BPM Plus, new_type flowmaster_bpm_plus&lt;/p&gt;
&lt;p&gt;The specific query functionality in the FlowMaster BPM Plus from NewType does not properly restrict user input, allowing remote attackers with regular privileges to inject SQL commands to read, modify, or delete database contents.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NewType FlowMaster BPM Plus, new_type flowmaster_bpm_plus&lt;/p&gt;
&lt;p&gt;The specific query functionality in the FlowMaster BPM Plus from NewType does not properly restrict user input, allowing remote attackers with regular privileges to inject SQL commands to read, modify, or delete database contents.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2024-9971</guid>
    </item>
  </channel>
</rss>
