<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T09:37:06.748536+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-953</id>
    <title>certfr-2021-avi-953 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-05T09:37:06.752082+00:00</updated>
    <content>certfr-2021-avi-953</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-953"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-23180</id>
    <title>EUVD-2026-23180</title>
    <updated>2026-10-05T09:37:06.752118+00:00</updated>
    <content>EUVD-2026-23180</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-23180"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-22818</id>
    <title>fkie_cve-2021-22818</title>
    <updated>2026-10-05T09:37:06.752133+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-307 Improper Restriction of Excessive Authentication Attempts vulnerability exists that could allow an attacker to gain unauthorized access to the charging station web interface by performing brute force attacks. Affected Products: EVlink City EVC1S22P4 / EVC1S7P4 (All versions prior to R8 V3.4.0.2 ), EVlink Parking EVW2 / EVF2 / EVP2PE (All versions prior to R8 V3.4.0.2), and EVlink Smart Wallbox EVB1A (All versions prior to R8 V3.4.0.2)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-22818"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-g234-r5wx-qx69</id>
    <title>GHSA-g234-r5wx-qx69</title>
    <updated>2026-10-05T09:37:06.752162+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-307 Improper Restriction of Excessive Authentication Attempts vulnerability exists that could allow an attacker to gain unauthorized access to the charging station web interface by performing brute force attacks. Affected Products: EVlink City EVC1S22P4 / EVC1S7P4 (All versions prior to R8 V3.4.0.2 ), EVlink Parking EVW2 / EVF2 / EVP2PE (All versions prior to R8 V3.4.0.2), and EVlink Smart Wallbox EVB1A (All versions prior to R8 V3.4.0.2)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-g234-r5wx-qx69"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-22818</id>
    <title>gsd-2021-22818</title>
    <updated>2026-10-05T09:37:06.752179+00:00</updated>
    <content>gsd-2021-22818</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-22818"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2021-348-02</id>
    <title>SEVD-2021-348-02 — EVlink City / Parking / Smart Wallbox Charging Stations</title>
    <updated>2026-10-05T09:37:06.752191+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of multiple vulnerabilities in its EVlink City, Parking, and Smart Wallbox products.
The EVlink products are electric vehicle (EV) charging stations for private properties, semi-public car parks and on-street charging.
These vulnerabilities can be exploited by obtaining physical access either to the charging station’s internal communication port, which requires disassembling the charging station enclosure, or, in the case of a connected station, to the network of the charging station’s supervision system. The risk is further elevated when the connected stations are accessible over the internet and have insufficient network security measures.
Customers should immediately apply the available remediations. Failure to do so may risk potential unauthorized access to the charging station’s web server, which could lead to tampering and compromise of the charging station’s settings and accounts. Such tampering could lead to things like denial of service attacks, which could result in unauthorized use of the charging station, service interruptions, failure to send charging data records to the supervision system and the modification and disclosure of the charging station’s configuration.
In addition to applying the available remediations to limit the risk of a connected charging station being compromised, Schneider Electric recommends that customers follow and apply network security best practices and ensure that the charging stations are not accessible…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2021-348-02"/>
  </entry>
</feed>
