<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T11:22:50.872295+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0112</id>
    <title>certfr-2025-avi-0112 — Une vulnérabilité a été découverte dans les produits Schneider Electric. Elle permet à un attaquant de provoquer une él…</title>
    <updated>2026-10-03T11:22:50.951986+00:00</updated>
    <content>certfr-2025-avi-0112</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0112"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-215428</id>
    <title>EUVD-2026-215428</title>
    <updated>2026-10-03T11:22:50.952027+00:00</updated>
    <content>EUVD-2026-215428</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-215428"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-0327</id>
    <title>fkie_cve-2025-0327</title>
    <updated>2026-10-03T11:22:50.952042+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CWE-269: Improper Privilege Management vulnerability exists for two services (of which one managing audit
trail data and the other acting as server managing client request) that could cause a loss of Confidentiality,
Integrity and Availability of engineering workstation when an attacker with standard privilege modifies the
executable path of the windows services. To be exploited, services need to be restarted.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-0327"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4v4v-fcfx-x6mg</id>
    <title>GHSA-4v4v-fcfx-x6mg</title>
    <updated>2026-10-03T11:22:50.952071+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CWE-269: Improper Privilege Management vulnerability exists for two services (of which one managing audit
trail data and the other acting as server managing client request) that could cause a loss of Confidentiality,
Integrity and Availability of engineering workstation when an attacker with standard privilege modifies the
executable path of the windows services. To be exploited, services need to be restarted.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4v4v-fcfx-x6mg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-079-01</id>
    <title>ICSA-25-079-01 — Schneider Electric EcoStruxure (Update A)</title>
    <updated>2026-10-03T11:22:50.952088+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of a vulnerability in its EcoStruxure Process Expert, EcoStruxure Process Expert for AVEVA System Platform products. The EcoStruxure Process Expert, EcoStruxure Process Expert for AVEVA System Platform products are engineering tools that facilitates and automates the design, maintenance, commissioning, and operation of Control projects for Modicon controllers and the associated Supervision projects for SCADA software regrouped in a system.. Failure to apply the Fix/Mitigations provided below may risk a local privilege escalation, which could result in loss of confidentiality, integrity and availability of the engineering workstation.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-079-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2025-042-03</id>
    <title>SEVD-2025-042-03 — EcoStruxure™ Process Expert, EcoStruxure™ Process Expert for AVEVA System Platform</title>
    <updated>2026-10-03T11:22:50.952109+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of a vulnerability in its EcoStruxure™ Process Expert, EcoStruxure™ Process 
Expert for AVEVA System Platform products. 
The EcoStruxure™ Process Expert, EcoStruxure™ Process Expert for AVEVA System Platform products are 
engineering tools that facilitates and automates the design, maintenance, commissioning, and operation of 
Control projects for Modicon controllers and the associated Supervision projects for SCADA software 
regrouped in a system.. 
Failure to apply the Fix/Mitigations provided below may risk a local privilege escalation, which could result in 
loss of confidentiality, integrity and availability of the engineering workstation.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2025-042-03"/>
  </entry>
</feed>
