<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from nvd</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 07:19:53 +0000</lastBuildDate>
    <item>
      <title>CVE-2026-97360 — HFS2 2.4.0 Unauthenticated Arbitrary File Read/Write via Template Engine</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-97360</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; rejetto hfs2&lt;/p&gt;
&lt;p&gt;HFS2 version 2.4.0 and earlier contains an unauthenticated arbitrary file access vulnerability that allows unauthenticated attackers to read, write, append, and delete files anywhere the HFS service account has filesystem access outside the shared folder. Attackers can exploit the macro dispatcher&amp;#39;s lack of authorization model combined with the path resolver&amp;#39;s failure to confine absolute paths to manipulate the template engine and compromise the confidentiality, integrity, and availability of the host.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; rejetto hfs2&lt;/p&gt;
&lt;p&gt;HFS2 version 2.4.0 and earlier contains an unauthenticated arbitrary file access vulnerability that allows unauthenticated attackers to read, write, append, and delete files anywhere the HFS service account has filesystem access outside the shared folder. Attackers can exploit the macro dispatcher&amp;#39;s lack of authorization model combined with the path resolver&amp;#39;s failure to confine absolute paths to manipulate the template engine and compromise the confidentiality, integrity, and availability of the host.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-97360</guid>
      <pubDate>Thu, 24 Sep 2026 13:32:32 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-97359 — HFS2 2.4.0 RCE via Multipart Upload Filename Template Injection</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-97359</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; rejetto hfs2&lt;/p&gt;
&lt;p&gt;HFS2 version 2.4.0 and earlier contains a template injection vulnerability in the multipart upload handler that allows unauthenticated attackers to achieve remote code execution by embedding malicious template syntax in a filename. Attackers can craft a filename containing a closing template quoting sequence followed by an exec macro, which bypasses the authorization check in the dispatcher to execute arbitrary commands on the underlying host system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; rejetto hfs2&lt;/p&gt;
&lt;p&gt;HFS2 version 2.4.0 and earlier contains a template injection vulnerability in the multipart upload handler that allows unauthenticated attackers to achieve remote code execution by embedding malicious template syntax in a filename. Attackers can craft a filename containing a closing template quoting sequence followed by an exec macro, which bypasses the authorization check in the dispatcher to execute arbitrary commands on the underlying host system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-97359</guid>
      <pubDate>Thu, 24 Sep 2026 13:28:18 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-97163 — Joomla Extension - lomart.fr - Unauthenticated remote code installation in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-97163</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; lomart.fr UP plugin for Joomla&lt;/p&gt;
&lt;p&gt;Joomla Extension - lomart.fr - Unauthenticated remote code installation in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; lomart.fr UP plugin for Joomla&lt;/p&gt;
&lt;p&gt;Joomla Extension - lomart.fr - Unauthenticated remote code installation in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-97163</guid>
      <pubDate>Sat, 26 Sep 2026 14:33:44 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-96587 — Use of Hard-coded Credentials in Viidure Dashcam Android Application</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-96587</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Viidure Dashcam Android Application&lt;/p&gt;
&lt;p&gt;The Viidure Android application embeds permanent, plaintext cloud storage credentials within its compiled code. These credentials provide full access to critical platform storage, including the ability to read, modify, or delete operational files such as firmware and application binaries.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Viidure Dashcam Android Application&lt;/p&gt;
&lt;p&gt;The Viidure Android application embeds permanent, plaintext cloud storage credentials within its compiled code. These credentials provide full access to critical platform storage, including the ability to read, modify, or delete operational files such as firmware and application binaries.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-96587</guid>
      <pubDate>Tue, 29 Sep 2026 20:42:38 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-96349 — WordPress SiteSkite plugin &lt;= 2.1.8 - Remote Code Execution (RCE) vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-96349</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; SiteSkite&lt;/p&gt;
&lt;p&gt;Unauthenticated Remote Code Execution (RCE) in SiteSkite &amp;lt;= 2.1.8 versions.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; SiteSkite&lt;/p&gt;
&lt;p&gt;Unauthenticated Remote Code Execution (RCE) in SiteSkite &amp;lt;= 2.1.8 versions.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-96349</guid>
      <pubDate>Wed, 30 Sep 2026 12:27:24 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-96257 — Fast FAC1203R Gigabit Edition Device Discovery Service copy_msg_element stack-based overflow</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-96257</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Fast FAC1203R Gigabit Edition&lt;/p&gt;
&lt;p&gt;A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this issue is the function copy_msg_element of the component Device Discovery Service. Executing a manipulation can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Fast FAC1203R Gigabit Edition&lt;/p&gt;
&lt;p&gt;A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this issue is the function copy_msg_element of the component Device Discovery Service. Executing a manipulation can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-96257</guid>
      <pubDate>Wed, 23 Sep 2026 03:00:10 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-9508 — Incorrect Permission Assignment for Critical Resource vulnerability in Suprema's BioStar</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-9508</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Suprema BioStar 2 (server)&lt;/p&gt;
&lt;p&gt;Incorrect permission settings on a critical resource in Suprema BioStar 2 (versions 2.9.3 through 2.9.11) that allow backup files to be publicly exposed when the administrator configures their path within the NGINX webroot. This vulnerability allows an attacker with network access to directly download backup ZIP files via ‘http(s)://[server]/download/…’ without requiring authentication. This exposes highly sensitive information that can lead to server impersonation, unauthorized access to databases, and lateral movement.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Suprema BioStar 2 (server)&lt;/p&gt;
&lt;p&gt;Incorrect permission settings on a critical resource in Suprema BioStar 2 (versions 2.9.3 through 2.9.11) that allow backup files to be publicly exposed when the administrator configures their path within the NGINX webroot. This vulnerability allows an attacker with network access to directly download backup ZIP files via ‘http(s)://[server]/download/…’ without requiring authentication. This exposes highly sensitive information that can lead to server impersonation, unauthorized access to databases, and lateral movement.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-9508</guid>
      <pubDate>Fri, 29 May 2026 12:09:02 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-94493 — Gigatech PDV5701 WebSocket Service index.html missing authentication</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-94493</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Gigatech PDV5701&lt;/p&gt;
&lt;p&gt;A vulnerability was detected in Gigatech PDV5701 1.0.31_240305_112640. This issue affects some unknown processing of the file /index.html of the component WebSocket Service. The manipulation results in missing authentication. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Gigatech PDV5701&lt;/p&gt;
&lt;p&gt;A vulnerability was detected in Gigatech PDV5701 1.0.31_240305_112640. This issue affects some unknown processing of the file /index.html of the component WebSocket Service. The manipulation results in missing authentication. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-94493</guid>
      <pubDate>Tue, 22 Sep 2026 01:00:18 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-94097 — Netcore NBR200V2 CGI Diagnostic Endpoint network_tools command injection</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-94097</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Netcore NBR200V2&lt;/p&gt;
&lt;p&gt;A vulnerability was determined in Netcore NBR200V2 1.3.241127.071246. This affects an unknown part of the file /www/cgi-bin/network_tools of the component CGI Diagnostic Endpoint. This manipulation of the argument param/key/val causes command injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Netcore NBR200V2&lt;/p&gt;
&lt;p&gt;A vulnerability was determined in Netcore NBR200V2 1.3.241127.071246. This affects an unknown part of the file /www/cgi-bin/network_tools of the component CGI Diagnostic Endpoint. This manipulation of the argument param/key/val causes command injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-94097</guid>
      <pubDate>Sun, 20 Sep 2026 23:45:10 +0000</pubDate>
    </item>
    <item>
      <title>CVE-2026-94089 — D-Link DIR-868L Authentication webfa_authentication.cgi strcpy stack-based overflow</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-94089</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; D-Link DIR-868L&lt;/p&gt;
&lt;p&gt;A vulnerability was determined in D-Link DIR-868L 2.01b05. This issue affects the function strcpy of the file /webfa_authentication.cgi of the component Authentication Handler. Executing a manipulation of the argument id/password can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; D-Link DIR-868L&lt;/p&gt;
&lt;p&gt;A vulnerability was determined in D-Link DIR-868L 2.01b05. This issue affects the function strcpy of the file /webfa_authentication.cgi of the component Authentication Handler. Executing a manipulation of the argument id/password can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-94089</guid>
      <pubDate>Sun, 20 Sep 2026 20:45:10 +0000</pubDate>
    </item>
  </channel>
</rss>
