<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T06:44:00.808805+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-853</id>
    <title>certfr-2021-avi-853 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-04T06:44:00.813102+00:00</updated>
    <content>certfr-2021-avi-853</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-853"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-23155</id>
    <title>EUVD-2026-23155</title>
    <updated>2026-10-04T06:44:00.813139+00:00</updated>
    <content>EUVD-2026-23155</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-23155"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-22799</id>
    <title>fkie_cve-2021-22799</title>
    <updated>2026-10-04T06:44:00.813155+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-331: Insufficient Entropy vulnerability exists that could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry. Affected Product: Schneider Electric Software Update, V2.3.0 through V2.5.1</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-22799"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-h572-23qr-5763</id>
    <title>GHSA-h572-23qr-5763</title>
    <updated>2026-10-04T06:44:00.813184+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-331: Insufficient Entropy vulnerability exists that could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry. Affected Product: Schneider Electric Software Update, V2.3.0 through V2.5.1</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-h572-23qr-5763"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-22799</id>
    <title>gsd-2021-22799</title>
    <updated>2026-10-04T06:44:00.813201+00:00</updated>
    <content>gsd-2021-22799</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-22799"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-21-336-01</id>
    <title>ICSA-21-336-01 — Schneider Electric SESU</title>
    <updated>2026-10-04T06:44:00.813212+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An insufficient entropy vulnerability exists, which could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry.CVE-2021-22799 has been assigned to this vulnerability. A CVSS v3 base score of 3.8 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-21-336-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2021-313-02</id>
    <title>SEVD-2021-313-02 — Schneider Electric Software Update</title>
    <updated>2026-10-04T06:44:00.813231+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of a vulnerability in its Schneider Electric Software Update product (also referred to as “SESU”), which is used to notify and download updates for other Schneider Electric Software products.
To connect to the Internet, the SESU product offers users to manually configure the proxy settings. Due to an improper protection of the saved credentials, it is potentially possible for an attacker to decrypt these credentials.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2021-313-02"/>
  </entry>
</feed>
