<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 16:23:48 +0000</lastBuildDate>
    <item>
      <title>certfr-2021-avi-854 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-854</link>
      <description>certfr-2021-avi-854</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-854</guid>
    </item>
    <item>
      <title>cnvd-2021-89446</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-89446</link>
      <description>cnvd-2021-89446</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-89446</guid>
    </item>
    <item>
      <title>EUVD-2026-221748</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-221748</link>
      <description>EUVD-2026-221748</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-221748</guid>
    </item>
    <item>
      <title>fkie_cve-2021-31344</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-31344</link>
      <description>&lt;p&gt;A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions &amp;lt; V2303), PLUSCONTROL 1st Gen (All versions), SIMOTICS CONNECT 400 (All versions &amp;lt; V0.5.0.0), SIMOTICS CONNECT 400 (All versions &amp;lt; V1.0.0.0). ICMP echo packets with fake IP options allow sending ICMP echo reply messages to arbitrary hosts on the network. (FSMD-2021-0004)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions &amp;lt; V2303), PLUSCONTROL 1st Gen (All versions), SIMOTICS CONNECT 400 (All versions &amp;lt; V0.5.0.0), SIMOTICS CONNECT 400 (All versions &amp;lt; V1.0.0.0). ICMP echo packets with fake IP options allow sending ICMP echo reply messages to arbitrary hosts on the network. (FSMD-2021-0004)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-31344</guid>
    </item>
    <item>
      <title>GHSA-47j6-w2j2-7jxf</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-47j6-w2j2-7jxf</link>
      <description>&lt;p&gt;A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACnet) (All versions), APOGEE MEC (PPC) (P2 Ethernet) (All versions), APOGEE PXC Compact (BACnet) (All versions), APOGEE PXC Compact (P2 Ethernet) (All versions), APOGEE PXC Modular (BACnet) (All versions), APOGEE PXC Modular (P2 Ethernet) (All versions), Capital VSTAR (All versions), Nucleus NET (All versions), Nucleus ReadyStart V3 (All versions &amp;lt; V2017.02.4), Nucleus ReadyStart V4 (All versions &amp;lt; V4.1.1), Nucleus Source Code (All versions), TALON TC Compact (BACnet) (All versions), TALON TC Modular (BACnet) (All versions). ICMP echo packets with fake IP options allow sending ICMP echo reply messages to arbitrary hosts on the network. (FSMD-2021-0004)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACnet) (All versions), APOGEE MEC (PPC) (P2 Ethernet) (All versions), APOGEE PXC Compact (BACnet) (All versions), APOGEE PXC Compact (P2 Ethernet) (All versions), APOGEE PXC Modular (BACnet) (All versions), APOGEE PXC Modular (P2 Ethernet) (All versions), Capital VSTAR (All versions), Nucleus NET (All versions), Nucleus ReadyStart V3 (All versions &amp;lt; V2017.02.4), Nucleus ReadyStart V4 (All versions &amp;lt; V4.1.1), Nucleus Source Code (All versions), TALON TC Compact (BACnet) (All versions), TALON TC Modular (BACnet) (All versions). ICMP echo packets with fake IP options allow sending ICMP echo reply messages to arbitrary hosts on the network. (FSMD-2021-0004)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-47j6-w2j2-7jxf</guid>
    </item>
    <item>
      <title>gsd-2021-31344</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-31344</link>
      <description>gsd-2021-31344</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-31344</guid>
    </item>
    <item>
      <title>ICSA-21-313-03 — Siemens Nucleus RTOS TCP/IP Stack</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-21-313-03</link>
      <description>&lt;p&gt;ICMP echo packets with fake IP options allow sending ICMP echo reply messages to arbitrary hosts on the network. (FSMD-2021-0004) The total length of an UDP payload (set in the IP header) is unchecked. This may lead to various side effects, including Information Leak and Denial-of-Service conditions, depending on a user-defined applications that runs on top of the UDP protocol. (FSMD-2021-0006) The total length of an ICMP payload (set in the IP header) is unchecked. This may lead to various side effects, including Information Leak and Denial-of-Service conditions, depending on the network buffer organization in memory. (FSMD-2021-0007) When processing a DHCP OFFER message, the DHCP client application does not validate the length of the Vendor option(s), leading to Denial-of-Service conditions. (FSMD-2021-0008) The DHCP client application does not validate the length of the Domain Name Server IP option(s) (0x06) when processing DHCP ACK packets. This may lead to Denial-of-Service conditions. (FSMD-2021-0011) When processing a DHCP ACK message, the DHCP client application does not validate the length of the Vendor option(s), leading to Denial-of-Service conditions. (FSMD-2021-0013) The DHCP client application assumes that the data supplied with the “Hostname” DHCP option is NULL terminated. In cases when global hostname variable is not defined, this may lead to Out-of-bound reads, writes, and Denial-of-service conditions. (FSMD-2021-0014) TFTP server application allows for rea…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ICMP echo packets with fake IP options allow sending ICMP echo reply messages to arbitrary hosts on the network. (FSMD-2021-0004) The total length of an UDP payload (set in the IP header) is unchecked. This may lead to various side effects, including Information Leak and Denial-of-Service conditions, depending on a user-defined applications that runs on top of the UDP protocol. (FSMD-2021-0006) The total length of an ICMP payload (set in the IP header) is unchecked. This may lead to various side effects, including Information Leak and Denial-of-Service conditions, depending on the network buffer organization in memory. (FSMD-2021-0007) When processing a DHCP OFFER message, the DHCP client application does not validate the length of the Vendor option(s), leading to Denial-of-Service conditions. (FSMD-2021-0008) The DHCP client application does not validate the length of the Domain Name Server IP option(s) (0x06) when processing DHCP ACK packets. This may lead to Denial-of-Service conditions. (FSMD-2021-0011) When processing a DHCP ACK message, the DHCP client application does not validate the length of the Vendor option(s), leading to Denial-of-Service conditions. (FSMD-2021-0013) The DHCP client application assumes that the data supplied with the “Hostname” DHCP option is NULL terminated. In cases when global hostname variable is not defined, this may lead to Out-of-bound reads, writes, and Denial-of-service conditions. (FSMD-2021-0014) TFTP server application allows for rea…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-21-313-03</guid>
    </item>
    <item>
      <title>VDE-2021-050 — WAGO: Multiple devices affected by Vulnerabilities in NUCLEUS TCP Stack.</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2021-050</link>
      <description>&lt;p&gt;Multiple vulnerabilities were reported in the Nucleus Real-Time Operating System (RTOS). The Nucleus RTOS is an essential component in several WAGO PLCs and fieldbus coupler. WAGO uses older Versions of the Nucleus RTOS also in legacy products.
For additional information please consult the official Siemens advisory:
• Advisory SSA-044112&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities were reported in the Nucleus Real-Time Operating System (RTOS). The Nucleus RTOS is an essential component in several WAGO PLCs and fieldbus coupler. WAGO uses older Versions of the Nucleus RTOS also in legacy products.
For additional information please consult the official Siemens advisory:
• Advisory SSA-044112&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2021-050</guid>
    </item>
    <item>
      <title>VDE-2021-059 — PHOENIX CONTACT: BLUEMARK X1 / LED / CLED printers utilizing the Siemens Nucleus RTOS TCP/IP Stack</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2021-059</link>
      <description>&lt;p&gt;The TCP/IP stack and of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contain several vulnerabilities. Nucleus NET is utilized by BLUEMARK X1 / LED / CLED.&lt;/p&gt;
&lt;p&gt;The abovementioned BLUEMARK printers are discontinued and only impacted by a subset of 8 of the 13 discovered vulnerabilities.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The TCP/IP stack and of the networking component (Nucleus NET) in Nucleus Real-Time Operating System (RTOS) contain several vulnerabilities. Nucleus NET is utilized by BLUEMARK X1 / LED / CLED.&lt;/p&gt;
&lt;p&gt;The abovementioned BLUEMARK printers are discontinued and only impacted by a subset of 8 of the 13 discovered vulnerabilities.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2021-059</guid>
    </item>
  </channel>
</rss>
