<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-10T09:10:41.797160+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-1094</id>
    <title>certfr-2022-avi-1094 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
    <updated>2026-10-10T09:10:41.882915+00:00</updated>
    <content>certfr-2022-avi-1094</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-1094"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2022-87981</id>
    <title>cnvd-2022-87981</title>
    <updated>2026-10-10T09:10:41.882959+00:00</updated>
    <content>cnvd-2022-87981</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2022-87981"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-232017</id>
    <title>EUVD-2026-232017</title>
    <updated>2026-10-10T09:10:41.882976+00:00</updated>
    <content>EUVD-2026-232017</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-232017"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-44731</id>
    <title>fkie_cve-2022-44731</title>
    <updated>2026-10-10T09:10:41.882989+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability has been identified in SIMATIC WinCC OA V3.15 (All versions &lt; V3.15 P038), SIMATIC WinCC OA V3.16 (All versions &lt; V3.16 P035), SIMATIC WinCC OA V3.17 (All versions &lt; V3.17 P024), SIMATIC WinCC OA V3.18 (All versions &lt; V3.18 P014). The affected component allows to inject custom arguments to the Ultralight Client backend application under certain circumstances.

This could allow an authenticated remote attacker to inject arbitrary parameters when starting the client via the web interface (e.g., open attacker chosen panels with the attacker's credentials or start a Ctrl script).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-44731"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6qqj-p988-f82q</id>
    <title>GHSA-6qqj-p988-f82q</title>
    <updated>2026-10-10T09:10:41.883022+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability has been identified in SIMATIC WinCC OA V3.15 (All versions), SIMATIC WinCC OA V3.16 (All versions &lt; V3.16 P035), SIMATIC WinCC OA V3.17 (All versions &lt; V3.17 P024), SIMATIC WinCC OA V3.18 (All versions &lt; V3.18 P014). The affected component allows to inject custom arguments to the Ultralight Client backend application under certain circumstances. This could allow an authenticated remote attacker to inject arbitrary parameters when starting the client via the web interface (e.g., open attacker chosen panels with the attacker's credentials or start a Ctrl script).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6qqj-p988-f82q"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-44731</id>
    <title>gsd-2022-44731</title>
    <updated>2026-10-10T09:10:41.883042+00:00</updated>
    <content>gsd-2022-44731</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-44731"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-22-349-06</id>
    <title>ICSA-22-349-06 — Siemens SIMATIC WinCC OA Ultralight Client</title>
    <updated>2026-10-10T09:10:41.883054+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected component allows to inject custom arguments to the Ultralight Client backend application under certain circumstances.

This could allow an authenticated remote attacker to inject arbitrary parameters when starting the client via the web interface (e.g., open attacker chosen panels with the attacker's credentials or start a Ctrl script).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-22-349-06"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2295</id>
    <title>WID-SEC-W-2022-2295 — Siemens SIMATIC WinCC: Schwachstelle ermöglicht Codeausführung</title>
    <updated>2026-10-10T09:10:41.883075+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Siemens SIMATIC WinCC ausnutzen, um beliebigen Programmcode auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2295"/>
  </entry>
</feed>
