<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T14:58:28.920979+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-08945</id>
    <title>bdu:2023-08945</title>
    <updated>2026-10-02T14:58:28.924945+00:00</updated>
    <content>bdu:2023-08945</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-08945"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-7505</id>
    <title>EUVD-2026-7505</title>
    <updated>2026-10-02T14:58:28.924980+00:00</updated>
    <content>EUVD-2026-7505</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-7505"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-5592</id>
    <title>fkie_cve-2023-5592</title>
    <updated>2026-10-02T14:58:28.924994+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK) allows an unauthenticated remote attacker to download and execute applications without integrity checks on the device which may result in a complete loss of integrity.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-5592"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f98h-m8p3-7jp3</id>
    <title>GHSA-f98h-m8p3-7jp3</title>
    <updated>2026-10-02T14:58:28.925023+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK) allows an unauthenticated remote attacker to download and execute applications without integrity checks on the device which may result in a complete loss of integrity.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f98h-m8p3-7jp3"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-5592</id>
    <title>gsd-2023-5592</title>
    <updated>2026-10-02T14:58:28.925039+00:00</updated>
    <content>gsd-2023-5592</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-5592"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2023-054</id>
    <title>VDE-2023-054 — Phoenix Contact: ProConOS prone to Download of Code Without Integrity Check</title>
    <updated>2026-10-02T14:58:28.925049+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Increased Security attacks against OT infrastructure and research of Dragos makes it necessary to publish this advisory giving users hints according to basic security measures to support automation systems using existing devices based on ProConOS/ProConOS eCLR.</p>
<p>ProConOS/ProConOS eCLR controller runtime system has been offered as a Software Development Kit (SDK) to automation suppliers that build their own automation devices. ProConOS/ProConOS eCLR is embedded into automation suppliers' hardware, real-time operating systems (RTOS), firmware, and I/O systems.
The application (e.g.: logic files, executable logic, configurations) had been designed without integrity and authenticity check which was state of the art when developing the products.</p>
<p>A CRC Check warning the user if the application of the Engineering tool and the PLC differs can be manipulated.</p>
<p>Users need to check with their device vendors if they are affected by this attack vulnerability or if the specific device integration mitigates this attack vector.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2023-054"/>
  </entry>
</feed>
