<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T23:29:34.197569+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-1094</id>
    <title>certfr-2022-avi-1094 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
    <updated>2026-10-07T23:29:34.266777+00:00</updated>
    <content>certfr-2022-avi-1094</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-1094"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2022-89759</id>
    <title>cnvd-2022-89759</title>
    <updated>2026-10-07T23:29:34.266821+00:00</updated>
    <content>cnvd-2022-89759</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2022-89759"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-232424</id>
    <title>EUVD-2026-232424</title>
    <updated>2026-10-07T23:29:34.266838+00:00</updated>
    <content>EUVD-2026-232424</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-232424"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-43724</id>
    <title>fkie_cve-2022-43724</title>
    <updated>2026-10-07T23:29:34.266851+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability has been identified in SICAM PAS/PQS (All versions &lt; V7.0). Affected software transmits the database credentials for the inbuilt SQL server in cleartext. In combination with the by default enabled xp_cmdshell feature unauthenticated remote attackers could execute custom OS commands. At the time of assigning the CVE, the affected firmware version of the component has already been superseded by succeeding mainline versions.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-43724"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-gpf3-4fw6-p76w</id>
    <title>GHSA-gpf3-4fw6-p76w</title>
    <updated>2026-10-07T23:29:34.266885+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability has been identified in SICAM PAS/PQS (All versions &lt; V7.0). Affected software transmits the database credentials for the inbuilt SQL server in cleartext. In combination with the by default enabled xp_cmdshell feature unauthenticated remote attackers could execute custom OS commands. At the time of assigning the CVE, the affected firmware version of the component has already been superseded by succeeding mainline versions.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-gpf3-4fw6-p76w"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-43724</id>
    <title>gsd-2022-43724</title>
    <updated>2026-10-07T23:29:34.266903+00:00</updated>
    <content>gsd-2022-43724</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-43724"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-22-349-19</id>
    <title>ICSA-22-349-19 — Siemens SICAM PAS</title>
    <updated>2026-10-07T23:29:34.266914+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected software does not properly secure a folder containing library files. This could allow an attacker to place a custom malicious DLL in this folder which is then run with SYSTEM rights when a service is started that requires this DLL.
At the time of assigning the CVE, the affected firmware version of the component has already been superseded by succeeding mainline versions. Affected software does not properly validate the input for a certain parameter in the s7ontcp.dll. This could allow an unauthenticated remote attacker to send messages and create a denial of service condition as the application crashes.
At the time of assigning the CVE, the affected firmware version of the component has already been superseded by succeeding mainline versions. Affected software transmits the database credentials for the inbuilt SQL server in cleartext. In combination with the by default enabled xp_cmdshell feature unauthenticated remote attackers could execute custom OS commands.
At the time of assigning the CVE, the affected firmware version of the component has already been superseded by succeeding mainline versions.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-22-349-19"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2381</id>
    <title>WID-SEC-W-2022-2381 — Siemens SICAM PAS/PQS: Mehrere Schwachstellen</title>
    <updated>2026-10-07T23:29:34.266939+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler oder entfernter, anonymer Angreifer kann mehrere Schwachstellen in Siemens SICAM PAS/PQS ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen und um einen Denial of Service Zustand zu verursachen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2381"/>
  </entry>
</feed>
