<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T08:59:41.777406+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-05524</id>
    <title>bdu:2023-05524</title>
    <updated>2026-10-03T08:59:41.783709+00:00</updated>
    <content>bdu:2023-05524</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-05524"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0732</id>
    <title>certfr-2023-avi-0732 — Une vulnérabilité a été découverte dans &lt;span class="textit"&gt;les
produits Schneider&lt;/span&gt;. Elle permet à un attaquant…</title>
    <updated>2026-10-03T08:59:41.783742+00:00</updated>
    <content>certfr-2023-avi-0732</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0732"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-219674</id>
    <title>EUVD-2026-219674</title>
    <updated>2026-10-03T08:59:41.783761+00:00</updated>
    <content>EUVD-2026-219674</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-219674"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-4516</id>
    <title>fkie_cve-2023-4516</title>
    <updated>2026-10-03T08:59:41.783773+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update
Service that could allow a local attacker to change update source, potentially leading to remote
code execution when the attacker force an update containing malicious content.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-4516"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4c87-xqpv-r7h5</id>
    <title>GHSA-4c87-xqpv-r7h5</title>
    <updated>2026-10-03T08:59:41.783800+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update
Service that could allow a local attacker to change update source, potentially leading to remote
code execution when the attacker force an update containing malicious content.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4c87-xqpv-r7h5"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-4516</id>
    <title>gsd-2023-4516</title>
    <updated>2026-10-03T08:59:41.783815+00:00</updated>
    <content>gsd-2023-4516</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-4516"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-23-220-01</id>
    <title>ICSA-23-220-01 — Schneider Electric IGSS</title>
    <updated>2026-10-03T08:59:41.783826+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A deserialization of untrusted data vulnerability that could cause an interpretation of malicious payload data exists in the Dashboard module, which could lead to arbitrary code execution if an attacker gets the user to open a malicious file. A missing authentication for critical function vulnerability that could allow a local attacker to change the update source exists in the IGSS Update Service, which could lead to remote code execution the attacker force an update containing malicious content.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-23-220-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2023-255-01</id>
    <title>SEVD-2023-255-01 — ​​​IGSS (Interactive Graphical SCADA System)​​</title>
    <updated>2026-10-03T08:59:41.783844+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of ​a vulnerability​ in its ​Update Service for the IGSS​ (Interactive Graphical SCADA System) product.  

The IGSS product is a state-of-the art SCADA system used for monitoring and controlling industrial processes. The IGSS Update Service handles IGSS Software to be updated. 

Failure to apply the remediation provided below may risk ​remote code execution​, which could result in a variety of issues including loss of control of the SCADA System with IGSS running in production mode</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2023-255-01"/>
  </entry>
</feed>
