<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T11:58:33.992713+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/9akk108471a3623</id>
    <title>9AKK108471A3623 — RMC - 100 Vulnerabilities in web UI (REST Interface)</title>
    <updated>2026-10-03T11:58:34.054102+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB is aware of vulnerabilities in the product versions listed as affected in the advisory.</p>
<p>An attacker who successfully exploited these vulnerabilities could gain unauthenticated access to the MQTT configu-ration data (CVE-2025-6074), cause a DoS on the MQTT configuration web server (REST interface) (CVE-2025-6073, CVE-2025-6072), or decrypt encrypted MQTT broker credentials (CVE-2025-6071).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/9akk108471a3623"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-08251</id>
    <title>bdu:2025-08251</title>
    <updated>2026-10-03T11:58:34.054157+00:00</updated>
    <content>bdu:2025-08251</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-08251"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-246410</id>
    <title>EUVD-2026-246410</title>
    <updated>2026-10-03T11:58:34.054173+00:00</updated>
    <content>EUVD-2026-246410</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-246410"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-6074</id>
    <title>fkie_cve-2025-6074</title>
    <updated>2026-10-03T11:58:34.054185+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Use of Hard-coded Cryptographic Key vulnerability in ABB RMC-100, ABB RMC-100 LITE.</p>
<p>When the REST interface is enabled by the user, and an attacker gains access to
source code and control network, the attacker can bypass the REST interface authentication and gain access to MQTT configuration data.</p>
<p>This issue affects RMC-100: from 2105457-043 through 2105457-045; RMC-100 LITE: from 2106229-015 through 2106229-016.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-6074"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-2f3f-xhh3-hqgg</id>
    <title>GHSA-2f3f-xhh3-hqgg</title>
    <updated>2026-10-03T11:58:34.054211+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Use of Hard-coded Cryptographic Key vulnerability in ABB RMC-100, ABB RMC-100 LITE.</p>
<p>When the REST interface is enabled by the user, and an attacker gains access to
source code and control network, the attacker can bypass the REST interface authentication and gain access to MQTT configuration data.</p>
<p>This issue affects RMC-100: from 2105457-043 through 2105457-045; RMC-100 LITE: from 2106229-015 through 2106229-016.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-2f3f-xhh3-hqgg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-196-02</id>
    <title>ICSA-25-196-02 — ABB RMC-100 (Update A)</title>
    <updated>2026-10-03T11:58:34.054229+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB is aware of vulnerabilities in the product versions listed as affected in the advisory.</p>
<p>An attacker who successfully exploited these vulnerabilities could gain unauthenticated access to the MQTT configu-ration data (CVE-2025-6074), cause a DoS on the MQTT configuration web server (REST interface) (CVE-2025-6073, CVE-2025-6072), or decrypt encrypted MQTT broker credentials (CVE-2025-6071).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-196-02"/>
  </entry>
</feed>
