<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 05:19:28 +0000</lastBuildDate>
    <item>
      <title>cnvd-2020-17490</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-17490</link>
      <description>cnvd-2020-17490</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-17490</guid>
    </item>
    <item>
      <title>EUVD-2026-50048</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-50048</link>
      <description>EUVD-2026-50048</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-50048</guid>
    </item>
    <item>
      <title>fkie_cve-2019-5107</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-5107</link>
      <description>&lt;p&gt;A cleartext transmission vulnerability exists in the network communication functionality of WAGO e!Cockpit version 1.5.1.1. An attacker with access to network traffic can easily intercept, interpret, and manipulate data coming from, or destined for e!Cockpit. This includes passwords, configurations, and binaries being transferred to endpoints.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A cleartext transmission vulnerability exists in the network communication functionality of WAGO e!Cockpit version 1.5.1.1. An attacker with access to network traffic can easily intercept, interpret, and manipulate data coming from, or destined for e!Cockpit. This includes passwords, configurations, and binaries being transferred to endpoints.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-5107</guid>
    </item>
    <item>
      <title>GHSA-x97q-g2hx-2vq7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-x97q-g2hx-2vq7</link>
      <description>&lt;p&gt;A cleartext transmission vulnerability exists in the network communication functionality of WAGO e!Cockpit version 1.5.1.1. An attacker with access to network traffic can easily intercept, interpret, and manipulate data coming from, or destined for e!Cockpit. This includes passwords, configurations, and binaries being transferred to endpoints.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A cleartext transmission vulnerability exists in the network communication functionality of WAGO e!Cockpit version 1.5.1.1. An attacker with access to network traffic can easily intercept, interpret, and manipulate data coming from, or destined for e!Cockpit. This includes passwords, configurations, and binaries being transferred to endpoints.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-x97q-g2hx-2vq7</guid>
    </item>
    <item>
      <title>gsd-2019-5107</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-5107</link>
      <description>gsd-2019-5107</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-5107</guid>
    </item>
    <item>
      <title>VDE-2020-004 — WAGO: e!Cockpit cleartext communication and hardcoded key</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2020-004</link>
      <description>&lt;p&gt;The communication between e!Cockpit and the programmable logic controller is not encrypted. The broken cryptographic algorithm allows an attacker to decode the password for the e!Cockpit communication and with this to manipulate the application.&lt;/p&gt;
&lt;p&gt;The password used by e!Cockpit for authentication against the PLC is encrypted with a hard-coded key. An attacker is able to decrypt the password by listening to the network traffic.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The communication between e!Cockpit and the programmable logic controller is not encrypted. The broken cryptographic algorithm allows an attacker to decode the password for the e!Cockpit communication and with this to manipulate the application.&lt;/p&gt;
&lt;p&gt;The password used by e!Cockpit for authentication against the PLC is encrypted with a hard-coded key. An attacker is able to decrypt the password by listening to the network traffic.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2020-004</guid>
    </item>
  </channel>
</rss>
