<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:01:15.549183+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-03130</id>
    <title>bdu:2022-03130</title>
    <updated>2026-10-03T05:01:15.557786+00:00</updated>
    <content>bdu:2022-03130</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-03130"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2020-avi-726</id>
    <title>certfr-2020-avi-726 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider Electric. Certaines d'entre elles permetten…</title>
    <updated>2026-10-03T05:01:15.557825+00:00</updated>
    <content>certfr-2020-avi-726</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2020-avi-726"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-322708</id>
    <title>EUVD-2026-322708</title>
    <updated>2026-10-03T05:01:15.557854+00:00</updated>
    <content>EUVD-2026-322708</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-322708"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-7564</id>
    <title>fkie_cve-2020-7564</title>
    <updated>2026-10-03T05:01:15.557901+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-7564"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-m8xw-66cv-rfr6</id>
    <title>GHSA-m8xw-66cv-rfr6</title>
    <updated>2026-10-03T05:01:15.557931+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-m8xw-66cv-rfr6"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-7564</id>
    <title>gsd-2020-7564</title>
    <updated>2026-10-03T05:01:15.557947+00:00</updated>
    <content>gsd-2020-7564</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-7564"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-21-005-01</id>
    <title>ICSA-21-005-01 — Schneider Electric Web Server on Modicon M340</title>
    <updated>2026-10-03T05:01:15.557958+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An out-of-bounds read vulnerability exists which could cause a segmentation fault or a buffer overflow when uploading a specially crafted file on the controller over FTP. CVE-2020-7562 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H). An out-of-bounds write vulnerability exists which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP. CVE-2020-7563 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H). A classic buffer overflow vulnerability exists which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP. CVE-2020-7564 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-21-005-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2020-315-01</id>
    <title>SEVD-2020-315-01 — Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules</title>
    <updated>2026-10-03T05:01:15.557981+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of multiple vulnerabilities in the web server of the Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their communication modules.
The Modicon Ethernet Programmable Automation products are controllers for industrial process and infrastructure.
Failure to apply the mitigations provided below may risk write access and the execution of commands, which could result in corruption of data, or crash of the web server.
September 2022 Update: A remediation is available for Modicon M340 X80 Ethernet Communication Module BMXNOC0401</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2020-315-01"/>
  </entry>
</feed>
