<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 12:36:51 +0000</lastBuildDate>
    <item>
      <title>CVE-2024-4296 — HGiga iSherlock - Arbitrary File Download</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2024-4296</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; HGiga iSherlock 4.5, HGiga iSherlock 5.5, hgiga isherlock&lt;/p&gt;
&lt;p&gt;The account management interface of HGiga iSherlock (including MailSherlock, SpamSherlock, AuditSherlock) fails to filter special characters in certain function parameters, allowing remote attackers with administrative privileges to exploit this vulnerability to download arbitrary system files.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; HGiga iSherlock 4.5, HGiga iSherlock 5.5, hgiga isherlock&lt;/p&gt;
&lt;p&gt;The account management interface of HGiga iSherlock (including MailSherlock, SpamSherlock, AuditSherlock) fails to filter special characters in certain function parameters, allowing remote attackers with administrative privileges to exploit this vulnerability to download arbitrary system files.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2024-4296</guid>
    </item>
  </channel>
</rss>
