<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 22:27:40 +0000</lastBuildDate>
    <item>
      <title>cnvd-2017-05157</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-05157</link>
      <description>cnvd-2017-05157</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-05157</guid>
    </item>
    <item>
      <title>EUVD-2026-73134</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-73134</link>
      <description>EUVD-2026-73134</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-73134</guid>
    </item>
    <item>
      <title>fkie_cve-2017-5158</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-5158</link>
      <description>&lt;p&gt;An Information Exposure issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. Credentials may be exposed to external systems via specific URL parameters, as arbitrary destination addresses may be specified.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An Information Exposure issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. Credentials may be exposed to external systems via specific URL parameters, as arbitrary destination addresses may be specified.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-5158</guid>
    </item>
    <item>
      <title>GHSA-h4hc-5cmg-rhc2</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h4hc-5cmg-rhc2</link>
      <description>&lt;p&gt;An Information Exposure issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. Credentials may be exposed to external systems via specific URL parameters, as arbitrary destination addresses may be specified.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An Information Exposure issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. Credentials may be exposed to external systems via specific URL parameters, as arbitrary destination addresses may be specified.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h4hc-5cmg-rhc2</guid>
    </item>
    <item>
      <title>gsd-2017-5158</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-5158</link>
      <description>gsd-2017-5158</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-5158</guid>
    </item>
    <item>
      <title>ICSA-17-089-01 — Schneider Electric Wonderware InTouch Access Anywhere</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-17-089-01</link>
      <description>&lt;p&gt;The client request may be forged from a different site. This will allow an external site to access internal RDP systems on behalf of the currently logged in user.CVE-2017-5156 has been assigned to this vulnerability. A CVSS v3 base score of 8.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H). Credentials may be exposed to external systems via specific URL parameters, as arbitrary destination addresses may be specified.CVE-2017-5158 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated by Schneider Electric; the CVSS vector string is (AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). The software will connect via Transport Layer Security without verifying the peer &amp;#39;s SSL certificate properly.CVE-2017-5160 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The client request may be forged from a different site. This will allow an external site to access internal RDP systems on behalf of the currently logged in user.CVE-2017-5156 has been assigned to this vulnerability. A CVSS v3 base score of 8.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H). Credentials may be exposed to external systems via specific URL parameters, as arbitrary destination addresses may be specified.CVE-2017-5158 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated by Schneider Electric; the CVSS vector string is (AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). The software will connect via Transport Layer Security without verifying the peer &amp;#39;s SSL certificate properly.CVE-2017-5160 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-17-089-01</guid>
    </item>
  </channel>
</rss>
