<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 20:43:14 +0000</lastBuildDate>
    <item>
      <title>bdu:2014-00001</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2014-00001</link>
      <description>bdu:2014-00001</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2014-00001</guid>
    </item>
    <item>
      <title>certfr-2022-avi-717 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-717</link>
      <description>certfr-2022-avi-717</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-717</guid>
    </item>
    <item>
      <title>EUVD-2026-117034</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-117034</link>
      <description>EUVD-2026-117034</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-117034</guid>
    </item>
    <item>
      <title>fkie_cve-2011-4859</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2011-4859</link>
      <description>&lt;p&gt;The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2011-4859</guid>
    </item>
    <item>
      <title>GHSA-wrpc-6j6r-gh72</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wrpc-6j6r-gh72</link>
      <description>&lt;p&gt;The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wrpc-6j6r-gh72</guid>
    </item>
    <item>
      <title>gsd-2011-4859</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2011-4859</link>
      <description>gsd-2011-4859</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2011-4859</guid>
    </item>
    <item>
      <title>ICSA-12-018-01B — Schneider Electric Quantum Ethernet Module Hard-Coded Credentials</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-12-018-01b</link>
      <description>&lt;p&gt;The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-12-018-01b</guid>
    </item>
    <item>
      <title>SEVD-2018-081-01 — Embedded FTP Servers for Modicon PAC Controllers</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2018-081-01</link>
      <description>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in the FTP servers of its Modicon PAC controllers.&#13;
&#13;
Modicon PACs (Programmable Automation Controllers) control and monitor industrial operations in a sustainable, flexible, efficient, and protected way. Our PLCs and PACs supply edge technology, augmenting it with Ethernet connectivity, built-in cybersecurity, and processing power needed to handle Big Data analysis and protect against new vulnerabilities among connected industrial assets, across devices or into the cloud.&#13;
&#13;
Failure to address these vulnerabilities could result in unauthorized access to your PLC and a denial of service or other malicious activity.&#13;
&#13;
March 2023 Update: Remediation for the Modicon M580 CPU is available for download&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in the FTP servers of its Modicon PAC controllers.&#13;
&#13;
Modicon PACs (Programmable Automation Controllers) control and monitor industrial operations in a sustainable, flexible, efficient, and protected way. Our PLCs and PACs supply edge technology, augmenting it with Ethernet connectivity, built-in cybersecurity, and processing power needed to handle Big Data analysis and protect against new vulnerabilities among connected industrial assets, across devices or into the cloud.&#13;
&#13;
Failure to address these vulnerabilities could result in unauthorized access to your PLC and a denial of service or other malicious activity.&#13;
&#13;
March 2023 Update: Remediation for the Modicon M580 CPU is available for download&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2018-081-01</guid>
    </item>
  </channel>
</rss>
