<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 04:10:06 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-03892</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-03892</link>
      <description>bdu:2021-03892</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-03892</guid>
    </item>
    <item>
      <title>certfr-2020-avi-726 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider Electric. Certaines d'entre elles permetten…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-726</link>
      <description>certfr-2020-avi-726</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-726</guid>
    </item>
    <item>
      <title>EUVD-2026-322707</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-322707</link>
      <description>EUVD-2026-322707</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-322707</guid>
    </item>
    <item>
      <title>fkie_cve-2020-7563</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-7563</link>
      <description>&lt;p&gt;A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-7563</guid>
    </item>
    <item>
      <title>GHSA-8h8v-4pgc-x2vp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8h8v-4pgc-x2vp</link>
      <description>&lt;p&gt;A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8h8v-4pgc-x2vp</guid>
    </item>
    <item>
      <title>gsd-2020-7563</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-7563</link>
      <description>gsd-2020-7563</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-7563</guid>
    </item>
    <item>
      <title>ICSA-21-005-01 — Schneider Electric Web Server on Modicon M340</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-21-005-01</link>
      <description>&lt;p&gt;An out-of-bounds read vulnerability exists which could cause a segmentation fault or a buffer overflow when uploading a specially crafted file on the controller over FTP. CVE-2020-7562 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H). An out-of-bounds write vulnerability exists which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP. CVE-2020-7563 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H). A classic buffer overflow vulnerability exists which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP. CVE-2020-7564 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An out-of-bounds read vulnerability exists which could cause a segmentation fault or a buffer overflow when uploading a specially crafted file on the controller over FTP. CVE-2020-7562 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H). An out-of-bounds write vulnerability exists which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP. CVE-2020-7563 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H). A classic buffer overflow vulnerability exists which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP. CVE-2020-7564 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-21-005-01</guid>
    </item>
    <item>
      <title>SEVD-2020-315-01 — Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2020-315-01</link>
      <description>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in the web server of the Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their communication modules.&#13;
The Modicon Ethernet Programmable Automation products are controllers for industrial process and infrastructure.&#13;
Failure to apply the mitigations provided below may risk write access and the execution of commands, which could result in corruption of data, or crash of the web server.&#13;
September 2022 Update: A remediation is available for Modicon M340 X80 Ethernet Communication Module BMXNOC0401&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in the web server of the Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their communication modules.&#13;
The Modicon Ethernet Programmable Automation products are controllers for industrial process and infrastructure.&#13;
Failure to apply the mitigations provided below may risk write access and the execution of commands, which could result in corruption of data, or crash of the web server.&#13;
September 2022 Update: A remediation is available for Modicon M340 X80 Ethernet Communication Module BMXNOC0401&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2020-315-01</guid>
    </item>
  </channel>
</rss>
