<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 00:18:40 +0000</lastBuildDate>
    <item>
      <title>bdu:2018-01159</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2018-01159</link>
      <description>bdu:2018-01159</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2018-01159</guid>
    </item>
    <item>
      <title>certfr-2018-avi-146 — De multiples vulnérabilités ont été découvertes dans SCADA Schneider
Electric Modicon. Certaines d'entre elles permette…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2018-avi-146</link>
      <description>certfr-2018-avi-146</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2018-avi-146</guid>
    </item>
    <item>
      <title>cnvd-2018-06521</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-06521</link>
      <description>cnvd-2018-06521</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-06521</guid>
    </item>
    <item>
      <title>EUVD-2026-63097</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-63097</link>
      <description>EUVD-2026-63097</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-63097</guid>
    </item>
    <item>
      <title>fkie_cve-2018-7240</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-7240</link>
      <description>&lt;p&gt;A vulnerability exists in Schneider Electric&amp;#39;s Modicon Quantum in all versions of the communication modules which could allow arbitrary code execution. An FTP command used to upgrade the firmware of the module can be misused to cause a denial of service, or in extreme cases, to load a malicious firmware.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability exists in Schneider Electric&amp;#39;s Modicon Quantum in all versions of the communication modules which could allow arbitrary code execution. An FTP command used to upgrade the firmware of the module can be misused to cause a denial of service, or in extreme cases, to load a malicious firmware.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-7240</guid>
    </item>
    <item>
      <title>GHSA-62m4-6p37-pc95</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-62m4-6p37-pc95</link>
      <description>&lt;p&gt;A vulnerability exists in Schneider Electric&amp;#39;s Modicon Quantum in all versions of the communication modules which could allow arbitrary code execution. An FTP command used to upgrade the firmware of the module can be misused to cause a denial of service, or in extreme cases, to load a malicious firmware.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability exists in Schneider Electric&amp;#39;s Modicon Quantum in all versions of the communication modules which could allow arbitrary code execution. An FTP command used to upgrade the firmware of the module can be misused to cause a denial of service, or in extreme cases, to load a malicious firmware.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-62m4-6p37-pc95</guid>
    </item>
    <item>
      <title>gsd-2018-7240</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-7240</link>
      <description>gsd-2018-7240</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-7240</guid>
    </item>
    <item>
      <title>ICSA-18-086-01 — Schneider Electric Modicon Premium, Modicon Quantum, Modicon M340, and Modicon BMXNOR0200</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-18-086-01</link>
      <description>&lt;p&gt;The FTP server does not limit the length of a command parameter which may cause a buffer overflow condition. CVE-2018-7240 has been assigned to this vulnerability. A CVSS v3 base score of 4.8 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H). The FTP servers contain a hard-coded account, which could allow unauthorized access. CVE-2018-7241 has been assigned to this vulnerability. A CVSS v3 base score of 5.9 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H). The FTP server does not limit the length of a command parameter, which may cause a buffer overflow condition. CVE-2018-7242 has been assigned to this vulnerability. A CVSS v3 base score of 5.9 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The FTP server does not limit the length of a command parameter which may cause a buffer overflow condition. CVE-2018-7240 has been assigned to this vulnerability. A CVSS v3 base score of 4.8 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H). The FTP servers contain a hard-coded account, which could allow unauthorized access. CVE-2018-7241 has been assigned to this vulnerability. A CVSS v3 base score of 5.9 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H). The FTP server does not limit the length of a command parameter, which may cause a buffer overflow condition. CVE-2018-7242 has been assigned to this vulnerability. A CVSS v3 base score of 5.9 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-18-086-01</guid>
    </item>
    <item>
      <title>SEVD-2018-081-01 — Embedded FTP Servers for Modicon PAC Controllers</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2018-081-01</link>
      <description>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in the FTP servers of its Modicon PAC controllers.&#13;
&#13;
Modicon PACs (Programmable Automation Controllers) control and monitor industrial operations in a sustainable, flexible, efficient, and protected way. Our PLCs and PACs supply edge technology, augmenting it with Ethernet connectivity, built-in cybersecurity, and processing power needed to handle Big Data analysis and protect against new vulnerabilities among connected industrial assets, across devices or into the cloud.&#13;
&#13;
Failure to address these vulnerabilities could result in unauthorized access to your PLC and a denial of service or other malicious activity.&#13;
&#13;
March 2023 Update: Remediation for the Modicon M580 CPU is available for download&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in the FTP servers of its Modicon PAC controllers.&#13;
&#13;
Modicon PACs (Programmable Automation Controllers) control and monitor industrial operations in a sustainable, flexible, efficient, and protected way. Our PLCs and PACs supply edge technology, augmenting it with Ethernet connectivity, built-in cybersecurity, and processing power needed to handle Big Data analysis and protect against new vulnerabilities among connected industrial assets, across devices or into the cloud.&#13;
&#13;
Failure to address these vulnerabilities could result in unauthorized access to your PLC and a denial of service or other malicious activity.&#13;
&#13;
March 2023 Update: Remediation for the Modicon M580 CPU is available for download&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2018-081-01</guid>
    </item>
  </channel>
</rss>
