<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:52:45 +0000</lastBuildDate>
    <item>
      <title>bdu:2022-04258</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-04258</link>
      <description>bdu:2022-04258</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-04258</guid>
    </item>
    <item>
      <title>EUVD-2026-17549</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-17549</link>
      <description>EUVD-2026-17549</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-17549</guid>
    </item>
    <item>
      <title>fkie_cve-2022-33208</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-33208</link>
      <description>&lt;p&gt;Authentication bypass by capture-replay vulnerability exists in Machine automation controller NJ series all models V 1.48 and earlier, Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, Automation software &amp;#39;Sysmac Studio&amp;#39; all models V1.49 and earlier, and Programmable Terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models Runtime V1.15 and earlier, which may allow a remote attacker who can analyze the communication between the affected controller and automation software &amp;#39;Sysmac Studio&amp;#39; and/or a Programmable Terminal (PT) to access the controller.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Authentication bypass by capture-replay vulnerability exists in Machine automation controller NJ series all models V 1.48 and earlier, Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, Automation software &amp;#39;Sysmac Studio&amp;#39; all models V1.49 and earlier, and Programmable Terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models Runtime V1.15 and earlier, which may allow a remote attacker who can analyze the communication between the affected controller and automation software &amp;#39;Sysmac Studio&amp;#39; and/or a Programmable Terminal (PT) to access the controller.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-33208</guid>
    </item>
    <item>
      <title>GHSA-r837-6rm6-h9pj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-r837-6rm6-h9pj</link>
      <description>&lt;p&gt;Authentication bypass by capture-replay vulnerability exists in Machine automation controller NJ series all models V 1.48 and earlier, Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, Automation software &amp;#39;Sysmac Studio&amp;#39; all models V1.49 and earlier, and Programmable Terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models Runtime V1.15 and earlier, which may allow a remote attacker who can analyze the communication between the affected controller and automation software &amp;#39;Sysmac Studio&amp;#39; and/or a Programmable Terminal (PT) to access the controller.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Authentication bypass by capture-replay vulnerability exists in Machine automation controller NJ series all models V 1.48 and earlier, Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, Automation software &amp;#39;Sysmac Studio&amp;#39; all models V1.49 and earlier, and Programmable Terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models Runtime V1.15 and earlier, which may allow a remote attacker who can analyze the communication between the affected controller and automation software &amp;#39;Sysmac Studio&amp;#39; and/or a Programmable Terminal (PT) to access the controller.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-r837-6rm6-h9pj</guid>
    </item>
    <item>
      <title>gsd-2022-33208</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-33208</link>
      <description>gsd-2022-33208</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-33208</guid>
    </item>
    <item>
      <title>ICSA-22-314-08 — Omron NJ/NX-series Machine Automation Controllers</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-22-314-08</link>
      <description>&lt;p&gt;Use of hard-coded credentials vulnerability exists in machine automation controller NJ series models v1.48 and earlier, machine automation controller NX7 series models v1.28 and earlier, machine automation controller NX1 series models v1.48 and earlier, automation software Sysmac Studio models v1.49 and earlier, and programmable terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models with runtime v1.15 and earlier; this may allow a remote attacker who successfully obtained the user credentials by analyzing the affected product to access the controller.CVE-2022-34151 has been assigned to this vulnerability. A CVSS v3 base score of 9.4 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H). An attacker who can capture and analyze communication between the affected controllers and either automation software Sysmac Studio and/or a programmable terminal (PT) can obtain sensitive information that would allow the attacker to bypass authentication and access the controller.CVE-2022-33208 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Use of hard-coded credentials vulnerability exists in machine automation controller NJ series models v1.48 and earlier, machine automation controller NX7 series models v1.28 and earlier, machine automation controller NX1 series models v1.48 and earlier, automation software Sysmac Studio models v1.49 and earlier, and programmable terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models with runtime v1.15 and earlier; this may allow a remote attacker who successfully obtained the user credentials by analyzing the affected product to access the controller.CVE-2022-34151 has been assigned to this vulnerability. A CVSS v3 base score of 9.4 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H). An attacker who can capture and analyze communication between the affected controllers and either automation software Sysmac Studio and/or a programmable terminal (PT) can obtain sensitive information that would allow the attacker to bypass authentication and access the controller.CVE-2022-33208 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-22-314-08</guid>
    </item>
    <item>
      <title>jvndb-2022-002691</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2022-002691</link>
      <description>&lt;p&gt;Machine automation controller NJ/NX series, Automation software &amp;#34;Sysmac Studio&amp;#34;, and programmable terminal (PT) NA series provided by OMRON Corporation contain multiple vulnerabilities in the communication function.&#13;
The vulnerabilities are as follows.&#13;
&#13;
  * Use of Hard-coded Credentials (CWE-798) - CVE-2022-34151&#13;
  * Authentication Bypass by Capture-replay (CWE-294) - CVE-2022-33208&#13;
  * Active Debug Code (CWE-489) - CVE-2022-33971&#13;
&#13;
OMRON Corporation reported these vulnerabilities to JPCERT/CC to notify users of the solutions through JVN.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Machine automation controller NJ/NX series, Automation software &amp;#34;Sysmac Studio&amp;#34;, and programmable terminal (PT) NA series provided by OMRON Corporation contain multiple vulnerabilities in the communication function.&#13;
The vulnerabilities are as follows.&#13;
&#13;
  * Use of Hard-coded Credentials (CWE-798) - CVE-2022-34151&#13;
  * Authentication Bypass by Capture-replay (CWE-294) - CVE-2022-33208&#13;
  * Active Debug Code (CWE-489) - CVE-2022-33971&#13;
&#13;
OMRON Corporation reported these vulnerabilities to JPCERT/CC to notify users of the solutions through JVN.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2022-002691</guid>
    </item>
  </channel>
</rss>
