<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 06:43:36 +0000</lastBuildDate>
    <item>
      <title>certfr-2021-avi-853 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-853</link>
      <description>certfr-2021-avi-853</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-853</guid>
    </item>
    <item>
      <title>EUVD-2026-23155</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-23155</link>
      <description>EUVD-2026-23155</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-23155</guid>
    </item>
    <item>
      <title>fkie_cve-2021-22799</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-22799</link>
      <description>&lt;p&gt;A CWE-331: Insufficient Entropy vulnerability exists that could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry. Affected Product: Schneider Electric Software Update, V2.3.0 through V2.5.1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-331: Insufficient Entropy vulnerability exists that could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry. Affected Product: Schneider Electric Software Update, V2.3.0 through V2.5.1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-22799</guid>
    </item>
    <item>
      <title>GHSA-h572-23qr-5763</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h572-23qr-5763</link>
      <description>&lt;p&gt;A CWE-331: Insufficient Entropy vulnerability exists that could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry. Affected Product: Schneider Electric Software Update, V2.3.0 through V2.5.1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-331: Insufficient Entropy vulnerability exists that could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry. Affected Product: Schneider Electric Software Update, V2.3.0 through V2.5.1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h572-23qr-5763</guid>
    </item>
    <item>
      <title>gsd-2021-22799</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-22799</link>
      <description>gsd-2021-22799</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-22799</guid>
    </item>
    <item>
      <title>ICSA-21-336-01 — Schneider Electric SESU</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-21-336-01</link>
      <description>&lt;p&gt;An insufficient entropy vulnerability exists, which could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry.CVE-2021-22799 has been assigned to this vulnerability. A CVSS v3 base score of 3.8 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An insufficient entropy vulnerability exists, which could cause unintended connection from an internal network to an external network when an attacker manages to decrypt the SESU proxy password from the registry.CVE-2021-22799 has been assigned to this vulnerability. A CVSS v3 base score of 3.8 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-21-336-01</guid>
    </item>
    <item>
      <title>SEVD-2021-313-02 — Schneider Electric Software Update</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2021-313-02</link>
      <description>&lt;p&gt;Schneider Electric is aware of a vulnerability in its Schneider Electric Software Update product (also referred to as “SESU”), which is used to notify and download updates for other Schneider Electric Software products.&#13;
To connect to the Internet, the SESU product offers users to manually configure the proxy settings. Due to an improper protection of the saved credentials, it is potentially possible for an attacker to decrypt these credentials.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of a vulnerability in its Schneider Electric Software Update product (also referred to as “SESU”), which is used to notify and download updates for other Schneider Electric Software products.&#13;
To connect to the Internet, the SESU product offers users to manually configure the proxy settings. Due to an improper protection of the saved credentials, it is potentially possible for an attacker to decrypt these credentials.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2021-313-02</guid>
    </item>
  </channel>
</rss>
