<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T03:46:52.350342+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/3adr011525</id>
    <title>3ADR011525 — ABB Automation Builder Gateway for Windows with insecure defaults</title>
    <updated>2026-10-04T03:46:52.415888+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB became aware of severe vulnerability in the products versions listed as affected in the advisory.</p>
<p>The Windows gateway is accessible remotely by default. Unauthenticated attackers can therefore search for PLCs, but the user management of the PLCs prevents the actual access to the PLCs – unless it is disabled</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/3adr011525"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/advisory2025-02_vde-2025-013</id>
    <title>Advisory2025-02_VDE-2025-013 — CODESYS (Edge) Gateway for Windows insecure default</title>
    <updated>2026-10-04T03:46:52.415953+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The CODESYS Gateway enables communication between CODESYS runtimes and other clients, primarily the CODESYS Development System V3. It is usually installed as a part of the CODESYS Development System V3 setup and accessed locally by the CODESYS Development System. Due to an insecure standard configuration of the CODESYS Gateway, it is not only accessible locally, but also remotely by default.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/advisory2025-02_vde-2025-013"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-223160</id>
    <title>EUVD-2026-223160</title>
    <updated>2026-10-04T03:46:52.415979+00:00</updated>
    <content>EUVD-2026-223160</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-223160"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-41975</id>
    <title>fkie_cve-2024-41975</title>
    <updated>2026-10-04T03:46:52.415994+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An unauthenticated remote attacker can gain limited information of the PLC network but the user management of the PLCs prevents the actual access to the PLCs.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-41975"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f9hf-p7m4-xh2g</id>
    <title>GHSA-f9hf-p7m4-xh2g</title>
    <updated>2026-10-04T03:46:52.416018+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An unauthenticated remote attacker can gain limited information of the PLC network but the user management of the PLCs prevents the actual access to the PLCs.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f9hf-p7m4-xh2g"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-26-132-04</id>
    <title>ICSA-26-132-04 — ABB Automation Builder Gateway for Windows</title>
    <updated>2026-10-04T03:46:52.416032+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB became aware of severe vulnerability in the products versions listed as affected in the advisory.</p>
<p>The Windows gateway is accessible remotely by default. Unauthenticated attackers can therefore search for PLCs, but the user management of the PLCs prevents the actual access to the PLCs – unless it is disabled</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-26-132-04"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0583</id>
    <title>WID-SEC-W-2025-0583 — CODESYS Gateway: Schwachstelle ermöglicht Offenlegung von Informationen</title>
    <updated>2026-10-04T03:46:52.416056+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in CODESYS Gateway ausnutzen, um Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0583"/>
  </entry>
</feed>
