<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 20:51:01 +0000</lastBuildDate>
    <item>
      <title>bdu:2020-02722</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-02722</link>
      <description>bdu:2020-02722</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-02722</guid>
    </item>
    <item>
      <title>certfr-2020-avi-357 — De multiples vulnérabilités ont été découvertes dans Schneider Electric
Easergy. Certaines d'entre elles permettent à u…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-357</link>
      <description>certfr-2020-avi-357</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-357</guid>
    </item>
    <item>
      <title>cnvd-2021-21473</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-21473</link>
      <description>cnvd-2021-21473</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-21473</guid>
    </item>
    <item>
      <title>EUVD-2026-38008</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-38008</link>
      <description>EUVD-2026-38008</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-38008</guid>
    </item>
    <item>
      <title>fkie_cve-2020-7505</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-7505</link>
      <description>&lt;p&gt;A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-7505</guid>
    </item>
    <item>
      <title>GHSA-qfhq-q296-49fr</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qfhq-q296-49fr</link>
      <description>&lt;p&gt;A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qfhq-q296-49fr</guid>
    </item>
    <item>
      <title>gsd-2020-7505</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-7505</link>
      <description>gsd-2020-7505</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-7505</guid>
    </item>
    <item>
      <title>SEVD-2020-161-04 — Easergy T300</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2020-161-04</link>
      <description>&lt;p&gt;Researchers from Rostelecom-Solar have made Schneider Electric aware of multiple &#13;
vulnerabilities affecting the company’s Easergy T300 product. Schneider Electric has worked &#13;
closely with the researchers to remediate the vulnerabilities. We appreciate their collaboration &#13;
and commitment to transparency. The vulnerabilities have been remediated via a free firmware &#13;
update, which is available immediately by contacting Schneider Electric’s Customer Care &#13;
Center. &#13;
Access to the customer’s network is required for the majority of the disclosed vulnerabilities to &#13;
be exploited. Therefore, if the customer’s network is well protected and monitored for intrusion, &#13;
and care is taken to obtain software updates from a trusted source, the general risk of &#13;
exploitation can be substantially minimized.&#13;
Schneider Electric encourages customers to upgrade to the new firmware as soon as possible. &#13;
The company further encourages customers to ensure any firmware files used to update the &#13;
device are acquired from trusted sources; to operate the products on properly segmented &#13;
control networks; to adequately secure any workstation that has been configured to have &#13;
access to the product; and to follow the remediation and general security recommendations &#13;
below. T300 is a grid automation platform that is typically deployed to medium voltage (2400-69000 VAC) substation cabinets.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Researchers from Rostelecom-Solar have made Schneider Electric aware of multiple &#13;
vulnerabilities affecting the company’s Easergy T300 product. Schneider Electric has worked &#13;
closely with the researchers to remediate the vulnerabilities. We appreciate their collaboration &#13;
and commitment to transparency. The vulnerabilities have been remediated via a free firmware &#13;
update, which is available immediately by contacting Schneider Electric’s Customer Care &#13;
Center. &#13;
Access to the customer’s network is required for the majority of the disclosed vulnerabilities to &#13;
be exploited. Therefore, if the customer’s network is well protected and monitored for intrusion, &#13;
and care is taken to obtain software updates from a trusted source, the general risk of &#13;
exploitation can be substantially minimized.&#13;
Schneider Electric encourages customers to upgrade to the new firmware as soon as possible. &#13;
The company further encourages customers to ensure any firmware files used to update the &#13;
device are acquired from trusted sources; to operate the products on properly segmented &#13;
control networks; to adequately secure any workstation that has been configured to have &#13;
access to the product; and to follow the remediation and general security recommendations &#13;
below. T300 is a grid automation platform that is typically deployed to medium voltage (2400-69000 VAC) substation cabinets.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2020-161-04</guid>
    </item>
  </channel>
</rss>
