<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T01:43:40.582340+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-02926</id>
    <title>bdu:2022-02926</title>
    <updated>2026-10-06T01:43:40.591326+00:00</updated>
    <content>bdu:2022-02926</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-02926"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0014</id>
    <title>certfr-2023-avi-0014 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider Electric. Certaines d'entre elles permetten…</title>
    <updated>2026-10-06T01:43:40.591373+00:00</updated>
    <content>certfr-2023-avi-0014</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0014"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2023-94706</id>
    <title>cnvd-2023-94706</title>
    <updated>2026-10-06T01:43:40.591405+00:00</updated>
    <content>cnvd-2023-94706</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2023-94706"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-230914</id>
    <title>EUVD-2026-230914</title>
    <updated>2026-10-06T01:43:40.591429+00:00</updated>
    <content>EUVD-2026-230914</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-230914"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-1467</id>
    <title>fkie_cve-2022-1467</title>
    <updated>2026-10-06T01:43:40.591449+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Windows OS can be configured to overlay a “language bar” on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-1467"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-2hvg-pfw9-r56c</id>
    <title>GHSA-2hvg-pfw9-r56c</title>
    <updated>2026-10-06T01:43:40.591496+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Windows OS can be configured to overlay a “language bar” on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-2hvg-pfw9-r56c"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-1467</id>
    <title>gsd-2022-1467</title>
    <updated>2026-10-06T01:43:40.591528+00:00</updated>
    <content>gsd-2022-1467</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-1467"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-22-130-05</id>
    <title>ICSA-22-130-05 — AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere</title>
    <updated>2026-10-06T01:43:40.591546+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Windows OS can be configured to overlay a language bar on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.CVE-2022-1467 has been assigned to this vulnerability. A CVSS v3 base score of 7.4 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-22-130-05"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2023-010-04</id>
    <title>SEVD-2023-010-04 — EcoStruxure™ Power SCADA Anywhere</title>
    <updated>2026-10-06T01:43:40.591581+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of a vulnerability in its EcoStruxure™ Power SCADA Anywhere product.
EcoStruxure™ Power SCADA Anywhere is an on-premises software that provides remote web browser access to the EcoStruxure Power Operation desktop HMI client application and its operator interface.
Failure to apply with the mitigations provided below may risk an authenticated user to escape from the context of EcoStruxure™ Power SCADA Anywhere into the Operating System (OS), which could result in arbitrary OS commands being executed on the system.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2023-010-04"/>
  </entry>
</feed>
