<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T20:51:49.351795+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-443</id>
    <title>certfr-2021-avi-443 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider Electric. Certaines d'entre elles permetten…</title>
    <updated>2026-10-02T20:51:49.356558+00:00</updated>
    <content>certfr-2021-avi-443</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-443"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-42155</id>
    <title>cnvd-2021-42155</title>
    <updated>2026-10-02T20:51:49.356590+00:00</updated>
    <content>cnvd-2021-42155</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-42155"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-23084</id>
    <title>EUVD-2026-23084</title>
    <updated>2026-10-02T20:51:49.356605+00:00</updated>
    <content>EUVD-2026-23084</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-23084"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-22754</id>
    <title>fkie_cve-2021-22754</title>
    <updated>2026-10-02T20:51:49.356617+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote code execution due to lack of proper validation of user-supplied data, when a malicious CGF file is imported to IGSS Definition.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-22754"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-2jvj-298c-h5x3</id>
    <title>GHSA-2jvj-298c-h5x3</title>
    <updated>2026-10-02T20:51:49.356642+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote code execution due to lack of proper validation of user-supplied data, when a malicious CGF file is imported to IGSS Definition.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-2jvj-298c-h5x3"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-22754</id>
    <title>gsd-2021-22754</title>
    <updated>2026-10-02T20:51:49.356658+00:00</updated>
    <content>gsd-2021-22754</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-22754"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-21-159-04</id>
    <title>ICSA-21-159-04 — Schneider Electric IGSS</title>
    <updated>2026-10-02T20:51:49.356668+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Exploitation of this vulnerability could result in loss of data or remote code execution due to missing length checks when a malicious CGF file is imported to IGSS Definition.CVE-2021-22750 has been assigned to this vulnerability. A CVSS v3 base score of 7.8 has been assigned; the CVSS vector string is (AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H). Exploitation of this vulnerability could result in disclosure of information or execution of arbitrary code due to lack of input validation when a malicious CGF (Configuration Group File) is imported to IGSS Definition.CVE-2021-22751 has been assigned to this vulnerability. A CVSS v3 base score of 7.8 has been assigned; the CVSS vector string is (AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H). Exploitation of this vulnerability could result in loss of data or remote code execution due to missing size checks when a malicious WSP (Workspace) file is being parsed by IGSS Definition.CVE-2021-22752 has been assigned to this vulnerability. A CVSS v3 base score of 7.8 has been assigned; the CVSS vector string is AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H). Exploitation of this vulnerability could result in loss of data or remote code execution due to missing length checks when a malicious WSP file is being parsed by IGSS Definition.CVE-2021-22753 has been assigned to this vulnerability. A CVSS v3 base score of 7.8 has been assigned; the CVSS vector string is (AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H). Exploitation of this vulnerability could result in loss of data or…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-21-159-04"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2021-159-01</id>
    <title>SEVD-2021-159-01 — IGSS (Interactive Graphical SCADA System)</title>
    <updated>2026-10-02T20:51:49.356711+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of multiple vulnerabilities in the Interactive Graphical SCADA 
System (IGSS) product. 
The IGSS product is a state-of-the art SCADA system used for monitoring and controlling 
industrial processes. IGSS communicates with all major industry standard PLC drivers. 
Failure to apply the remediations provided below may risk remote code execution, which could 
result in an attacker gaining access to the Windows Operating System on the machine used to 
import CGF and WSP files, typically a step performed during system design time.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2021-159-01"/>
  </entry>
</feed>
