<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 14:33:59 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-04281</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-04281</link>
      <description>bdu:2021-04281</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-04281</guid>
    </item>
    <item>
      <title>certfr-2020-avi-726 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider Electric. Certaines d'entre elles permetten…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-726</link>
      <description>certfr-2020-avi-726</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-726</guid>
    </item>
    <item>
      <title>cnvd-2024-38820</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2024-38820</link>
      <description>cnvd-2024-38820</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2024-38820</guid>
    </item>
    <item>
      <title>EUVD-2026-322709</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-322709</link>
      <description>EUVD-2026-322709</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-322709</guid>
    </item>
    <item>
      <title>fkie_cve-2020-7565</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-7565</link>
      <description>&lt;p&gt;A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to break the encryption key when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to break the encryption key when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-7565</guid>
    </item>
    <item>
      <title>GHSA-93f9-wg2h-r6p5</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-93f9-wg2h-r6p5</link>
      <description>&lt;p&gt;A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to break the encryption key when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to break the encryption key when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-93f9-wg2h-r6p5</guid>
    </item>
    <item>
      <title>gsd-2020-7565</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-7565</link>
      <description>gsd-2020-7565</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-7565</guid>
    </item>
    <item>
      <title>ICSA-20-343-04 — Schneider Electric Modicon M221 Programmable Logic Controller</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-20-343-04</link>
      <description>&lt;p&gt;An inadequate encryption strength vulnerability exists that could allow the attacker to break the encryption key when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.CVE-2020-7565 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). A small space of random values vulnerability exists that could allow the attacker to break the encryption keys when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.CVE-2020-7566 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). A missing encryption of sensitive data vulnerability exists that could allow the attacker to find the password hash when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller and has broken the encryption keys.CVE-2020-7567 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). An exposure of sensitive information to an unauthorized actor vulnerability exists that could allow non-sensitive information disclosure when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.CVE-2020-7568 ha…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An inadequate encryption strength vulnerability exists that could allow the attacker to break the encryption key when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.CVE-2020-7565 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). A small space of random values vulnerability exists that could allow the attacker to break the encryption keys when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.CVE-2020-7566 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). A missing encryption of sensitive data vulnerability exists that could allow the attacker to find the password hash when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller and has broken the encryption keys.CVE-2020-7567 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). An exposure of sensitive information to an unauthorized actor vulnerability exists that could allow non-sensitive information disclosure when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.CVE-2020-7568 ha…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-20-343-04</guid>
    </item>
    <item>
      <title>SEVD-2020-315-05 — Modicon M100/M200/M221 Programmable Logic Controller</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2020-315-05</link>
      <description>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in its Modicon M100, M200, and M221&#13;
products. &#13;
The Modicon M100/M200/M221 are Nano Programmable Logic Controllers (PLC) made to &#13;
control basic automation for machines. The M100/M200/M221 are configured using Machine &#13;
Expert - Basic software. &#13;
Failure to apply the mitigations provided below may allow unauthorized users to replay &#13;
authentication sequences, which could result in an attacker taking control over the PLC. &#13;
January 2021 update: Added Modicon M100 and M200 to the list of affected products.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in its Modicon M100, M200, and M221&#13;
products. &#13;
The Modicon M100/M200/M221 are Nano Programmable Logic Controllers (PLC) made to &#13;
control basic automation for machines. The M100/M200/M221 are configured using Machine &#13;
Expert - Basic software. &#13;
Failure to apply the mitigations provided below may allow unauthorized users to replay &#13;
authentication sequences, which could result in an attacker taking control over the PLC. &#13;
January 2021 update: Added Modicon M100 and M200 to the list of affected products.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2020-315-05</guid>
    </item>
  </channel>
</rss>
