<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T02:00:54.318636+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2014-00001</id>
    <title>bdu:2014-00001</title>
    <updated>2026-10-03T02:00:54.340465+00:00</updated>
    <content>bdu:2014-00001</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2014-00001"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-717</id>
    <title>certfr-2022-avi-717 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-03T02:00:54.340498+00:00</updated>
    <content>certfr-2022-avi-717</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-717"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-117034</id>
    <title>EUVD-2026-117034</title>
    <updated>2026-10-03T02:00:54.340517+00:00</updated>
    <content>EUVD-2026-117034</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-117034"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2011-4859</id>
    <title>fkie_cve-2011-4859</title>
    <updated>2026-10-03T02:00:54.340529+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2011-4859"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-wrpc-6j6r-gh72</id>
    <title>GHSA-wrpc-6j6r-gh72</title>
    <updated>2026-10-03T02:00:54.340558+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-wrpc-6j6r-gh72"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2011-4859</id>
    <title>gsd-2011-4859</title>
    <updated>2026-10-03T02:00:54.340577+00:00</updated>
    <content>gsd-2011-4859</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2011-4859"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-12-018-01b</id>
    <title>ICSA-12-018-01B — Schneider Electric Quantum Ethernet Module Hard-Coded Credentials</title>
    <updated>2026-10-03T02:00:54.340601+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-12-018-01b"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2018-081-01</id>
    <title>SEVD-2018-081-01 — Embedded FTP Servers for Modicon PAC Controllers</title>
    <updated>2026-10-03T02:00:54.340627+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of multiple vulnerabilities in the FTP servers of its Modicon PAC controllers.

Modicon PACs (Programmable Automation Controllers) control and monitor industrial operations in a sustainable, flexible, efficient, and protected way. Our PLCs and PACs supply edge technology, augmenting it with Ethernet connectivity, built-in cybersecurity, and processing power needed to handle Big Data analysis and protect against new vulnerabilities among connected industrial assets, across devices or into the cloud.

Failure to address these vulnerabilities could result in unauthorized access to your PLC and a denial of service or other malicious activity.

March 2023 Update: Remediation for the Modicon M580 CPU is available for download</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2018-081-01"/>
  </entry>
</feed>
