<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T13:24:29.134916+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-10626</id>
    <title>bdu:2025-10626</title>
    <updated>2026-10-05T13:24:29.139269+00:00</updated>
    <content>bdu:2025-10626</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-10626"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0676</id>
    <title>certfr-2025-avi-0676 — De multiples vulnérabilités ont été découvertes dans les produits Schneider Electric. Certaines d'entre elles permetten…</title>
    <updated>2026-10-05T13:24:29.139304+00:00</updated>
    <content>certfr-2025-avi-0676</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0676"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-252353</id>
    <title>EUVD-2026-252353</title>
    <updated>2026-10-05T13:24:29.139323+00:00</updated>
    <content>EUVD-2026-252353</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-252353"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-8448</id>
    <title>fkie_cve-2025-8448</title>
    <updated>2026-10-05T13:24:29.139336+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause unauthorized access to sensitive credential data when an attacker is able to capture local SMB traffic between a valid user within the BMS network and the vulnerable products.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-8448"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-w6r8-h9q4-qq7v</id>
    <title>GHSA-w6r8-h9q4-qq7v</title>
    <updated>2026-10-05T13:24:29.139365+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause unauthorized access to sensitive credential data when an attacker is able to capture local SMB traffic between a valid user within the BMS network and the vulnerable products.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-w6r8-h9q4-qq7v"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-254-08</id>
    <title>ICSA-25-254-08 — Schneider Electric EcoStruxure</title>
    <updated>2026-10-05T13:24:29.139380+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Schneider Electric is aware of multiple vulnerabilities in EcoStruxure™ Building Operation Enterprise Server, 
EcoStruxure™ Building Operation Enterprise Central, and EcoStruxure™ Workstation.</p>
<p>[EcoStruxure™ Building Operation (EBO)](https://www.se.com/us/en/product-range/62111-ecostruxure-building-operation-software/#overview) is an open and scalable software platform providing insight, control 
and management of multiple building systems and devices in one mobile-enabled convenient view. It delivers 
valuable data for decision-making to improve energy management and increase efficiency for better building 
performance and comfort, reduced carbon, and more sustainable building environments.</p>
<p>Failure to apply the remediations below may risk credential theft and subsequent unauthorized access and 
remote code execution from within the BMS network, which could result in data breaches, and operational disruptions.</p>
<p>September 2025 Update: Updated affected and fixed version details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-254-08"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2025-224-04</id>
    <title>SEVD-2025-224-04 — EcoStruxure™ Building Operation Enterprise Server, EcoStruxure™ Building Operation Enterprise Central, and EcoStruxure™…</title>
    <updated>2026-10-05T13:24:29.139411+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Schneider Electric is aware of multiple vulnerabilities in EcoStruxure™ Building Operation Enterprise Server, 
EcoStruxure™ Building Operation Enterprise Central, and EcoStruxure™ Workstation.</p>
<p>[EcoStruxure™ Building Operation (EBO)](https://www.se.com/us/en/product-range/62111-ecostruxure-building-operation-software/#overview) is an open and scalable software platform providing insight, control 
and management of multiple building systems and devices in one mobile-enabled convenient view. It delivers 
valuable data for decision-making to improve energy management and increase efficiency for better building 
performance and comfort, reduced carbon, and more sustainable building environments.</p>
<p>Failure to apply the remediations below may risk credential theft and subsequent unauthorized access and 
remote code execution from within the BMS network, which could result in data breaches, and operational disruptions.</p>
<p>September 2025 Update: Updated affected and fixed version details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2025-224-04"/>
  </entry>
</feed>
