<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:56:54 +0000</lastBuildDate>
    <item>
      <title>certfr-2022-avi-627 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-627</link>
      <description>certfr-2022-avi-627</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-627</guid>
    </item>
    <item>
      <title>cnvd-2022-51635</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2022-51635</link>
      <description>cnvd-2022-51635</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2022-51635</guid>
    </item>
    <item>
      <title>EUVD-2026-232071</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-232071</link>
      <description>EUVD-2026-232071</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-232071</guid>
    </item>
    <item>
      <title>fkie_cve-2022-34820</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-34820</link>
      <description>&lt;p&gt;A vulnerability has been identified in SIMATIC CP 1242-7 V2 (All versions &amp;lt; V3.3.46), SIMATIC CP 1243-1 (All versions &amp;lt; V3.3.46), SIMATIC CP 1243-7 LTE EU (All versions &amp;lt; V3.3.46), SIMATIC CP 1243-7 LTE US (All versions &amp;lt; V3.3.46), SIMATIC CP 1243-8 IRC (All versions &amp;lt; V3.3.46), SIMATIC CP 1542SP-1 IRC (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIMATIC CP 1543-1 (All versions &amp;lt; V3.0.22), SIMATIC CP 1543SP-1 (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIPLUS ET 200SP CP 1542SP-1 IRC TX RAIL (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIPLUS ET 200SP CP 1543SP-1 ISEC (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIPLUS ET 200SP CP 1543SP-1 ISEC TX RAIL (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIPLUS NET CP 1242-7 V2 (All versions &amp;lt; V3.3.46), SIPLUS NET CP 1543-1 (All versions &amp;lt; V3.0.22), SIPLUS S7-1200 CP 1243-1 (All versions &amp;lt; V3.3.46), SIPLUS S7-1200 CP 1243-1 RAIL (All versions &amp;lt; V3.3.46). The application does not correctly escape some user provided fields during the authentication process. This could allow an attacker to inject custom commands and execute arbitrary code with elevated privileges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SIMATIC CP 1242-7 V2 (All versions &amp;lt; V3.3.46), SIMATIC CP 1243-1 (All versions &amp;lt; V3.3.46), SIMATIC CP 1243-7 LTE EU (All versions &amp;lt; V3.3.46), SIMATIC CP 1243-7 LTE US (All versions &amp;lt; V3.3.46), SIMATIC CP 1243-8 IRC (All versions &amp;lt; V3.3.46), SIMATIC CP 1542SP-1 IRC (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIMATIC CP 1543-1 (All versions &amp;lt; V3.0.22), SIMATIC CP 1543SP-1 (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIPLUS ET 200SP CP 1542SP-1 IRC TX RAIL (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIPLUS ET 200SP CP 1543SP-1 ISEC (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIPLUS ET 200SP CP 1543SP-1 ISEC TX RAIL (All versions &amp;gt;= V2.0 &amp;lt; V2.2.28), SIPLUS NET CP 1242-7 V2 (All versions &amp;lt; V3.3.46), SIPLUS NET CP 1543-1 (All versions &amp;lt; V3.0.22), SIPLUS S7-1200 CP 1243-1 (All versions &amp;lt; V3.3.46), SIPLUS S7-1200 CP 1243-1 RAIL (All versions &amp;lt; V3.3.46). The application does not correctly escape some user provided fields during the authentication process. This could allow an attacker to inject custom commands and execute arbitrary code with elevated privileges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-34820</guid>
    </item>
    <item>
      <title>GHSA-6j7x-87cm-p532</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6j7x-87cm-p532</link>
      <description>&lt;p&gt;A vulnerability has been identified in SIMATIC CP 1242-7 V2 (All versions), SIMATIC CP 1243-1 (All versions), SIMATIC CP 1243-7 LTE EU (All versions), SIMATIC CP 1243-7 LTE US (All versions), SIMATIC CP 1243-8 IRC (All versions), SIMATIC CP 1542SP-1 IRC (All versions &amp;gt;= V2.0), SIMATIC CP 1543-1 (All versions &amp;lt; V3.0.22), SIMATIC CP 1543SP-1 (All versions &amp;gt;= V2.0), SIPLUS ET 200SP CP 1542SP-1 IRC TX RAIL (All versions &amp;gt;= V2.0), SIPLUS ET 200SP CP 1543SP-1 ISEC (All versions &amp;gt;= V2.0), SIPLUS ET 200SP CP 1543SP-1 ISEC TX RAIL (All versions &amp;gt;= V2.0), SIPLUS NET CP 1242-7 V2 (All versions), SIPLUS NET CP 1543-1 (All versions &amp;lt; V3.0.22), SIPLUS S7-1200 CP 1243-1 (All versions), SIPLUS S7-1200 CP 1243-1 RAIL (All versions). The application does not correctly escape some user provided fields during the authentication process. This could allow an attacker to inject custom commands and execute arbitrary code with elevated privileges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SIMATIC CP 1242-7 V2 (All versions), SIMATIC CP 1243-1 (All versions), SIMATIC CP 1243-7 LTE EU (All versions), SIMATIC CP 1243-7 LTE US (All versions), SIMATIC CP 1243-8 IRC (All versions), SIMATIC CP 1542SP-1 IRC (All versions &amp;gt;= V2.0), SIMATIC CP 1543-1 (All versions &amp;lt; V3.0.22), SIMATIC CP 1543SP-1 (All versions &amp;gt;= V2.0), SIPLUS ET 200SP CP 1542SP-1 IRC TX RAIL (All versions &amp;gt;= V2.0), SIPLUS ET 200SP CP 1543SP-1 ISEC (All versions &amp;gt;= V2.0), SIPLUS ET 200SP CP 1543SP-1 ISEC TX RAIL (All versions &amp;gt;= V2.0), SIPLUS NET CP 1242-7 V2 (All versions), SIPLUS NET CP 1543-1 (All versions &amp;lt; V3.0.22), SIPLUS S7-1200 CP 1243-1 (All versions), SIPLUS S7-1200 CP 1243-1 RAIL (All versions). The application does not correctly escape some user provided fields during the authentication process. This could allow an attacker to inject custom commands and execute arbitrary code with elevated privileges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6j7x-87cm-p532</guid>
    </item>
    <item>
      <title>gsd-2022-34820</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-34820</link>
      <description>gsd-2022-34820</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-34820</guid>
    </item>
    <item>
      <title>ICSA-22-195-12 — Siemens SRCS VPN Feature in SIMATIC CP Devices</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-22-195-12</link>
      <description>&lt;p&gt;The application lacks proper validation of user-supplied data when parsing specific messages. This could result in a heap-based buffer overflow. An attacker could leverage this vulnerability to execute code in the context of device. The application does not correctly escape some user provided fields during the authentication process. This could allow an attacker to inject custom commands and execute arbitrary code with elevated privileges. By injecting code to specific configuration options for OpenVPN, an attacker could execute arbitrary code with elevated privileges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The application lacks proper validation of user-supplied data when parsing specific messages. This could result in a heap-based buffer overflow. An attacker could leverage this vulnerability to execute code in the context of device. The application does not correctly escape some user provided fields during the authentication process. This could allow an attacker to inject custom commands and execute arbitrary code with elevated privileges. By injecting code to specific configuration options for OpenVPN, an attacker could execute arbitrary code with elevated privileges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-22-195-12</guid>
    </item>
  </channel>
</rss>
