<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 13:26:50 +0000</lastBuildDate>
    <item>
      <title>certfr-2020-avi-726 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider Electric. Certaines d'entre elles permetten…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-726</link>
      <description>certfr-2020-avi-726</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-726</guid>
    </item>
    <item>
      <title>cnvd-2021-29462</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-29462</link>
      <description>cnvd-2021-29462</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-29462</guid>
    </item>
    <item>
      <title>EUVD-2026-46978</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-46978</link>
      <description>EUVD-2026-46978</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-46978</guid>
    </item>
    <item>
      <title>fkie_cve-2020-28213</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-28213</link>
      <description>&lt;p&gt;A CWE-494: Download of Code Without Integrity Check vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause unauthorized command execution when sending specially crafted requests over Modbus.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-494: Download of Code Without Integrity Check vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause unauthorized command execution when sending specially crafted requests over Modbus.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-28213</guid>
    </item>
    <item>
      <title>GHSA-45p7-9xjf-9687</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-45p7-9xjf-9687</link>
      <description>&lt;p&gt;A CWE-494: Download of Code Without Integrity Check vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause unauthorized command execution when sending specially crafted requests over Modbus.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-494: Download of Code Without Integrity Check vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause unauthorized command execution when sending specially crafted requests over Modbus.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-45p7-9xjf-9687</guid>
    </item>
    <item>
      <title>gsd-2020-28213</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-28213</link>
      <description>gsd-2020-28213</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-28213</guid>
    </item>
    <item>
      <title>SEVD-2020-315-07 — PLC Simulator on EcoStruxure™ Control Expert and Process Expert</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2020-315-07</link>
      <description>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in its PLC Simulator for EcoStruxure™ Control Expert product.&#13;
PLC Simulator feature is part of the EcostruxureTM Control Expert and EcostruxureTM Process Expert software and it helps users to review and test their configurations files in a simulation environment; it is not intended to be used as a controller CPU in a production environment.&#13;
Failure to apply the mitigations provided below may risk unauthorized command execution or denial of service, which could result in undesired actions by the PLC simulator software.&#13;
March 2023 Update: An additional mitigation has been provided using a Cybersecurity Application Note (page 3).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in its PLC Simulator for EcoStruxure™ Control Expert product.&#13;
PLC Simulator feature is part of the EcostruxureTM Control Expert and EcostruxureTM Process Expert software and it helps users to review and test their configurations files in a simulation environment; it is not intended to be used as a controller CPU in a production environment.&#13;
Failure to apply the mitigations provided below may risk unauthorized command execution or denial of service, which could result in undesired actions by the PLC simulator software.&#13;
March 2023 Update: An additional mitigation has been provided using a Cybersecurity Application Note (page 3).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2020-315-07</guid>
    </item>
  </channel>
</rss>
