<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 18:42:15 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-02117</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-02117</link>
      <description>bdu:2023-02117</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-02117</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0297 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider Electric. Certaines d'entre elles permetten…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0297</link>
      <description>certfr-2023-avi-0297</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0297</guid>
    </item>
    <item>
      <title>EUVD-2026-213892</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-213892</link>
      <description>EUVD-2026-213892</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-213892</guid>
    </item>
    <item>
      <title>fkie_cve-2023-29412</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-29412</link>
      <description>&lt;p&gt;CWE-78: Improper Neutralization of Special Elements used in an OS Command (&amp;#39;OS Command
Injection&amp;#39;) vulnerability exists that could cause remote code execution when manipulating
internal methods through Java RMI interface.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;CWE-78: Improper Neutralization of Special Elements used in an OS Command (&amp;#39;OS Command
Injection&amp;#39;) vulnerability exists that could cause remote code execution when manipulating
internal methods through Java RMI interface.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-29412</guid>
    </item>
    <item>
      <title>GHSA-7p8q-cvq9-54g6</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7p8q-cvq9-54g6</link>
      <description>&lt;p&gt;A CWE-78: Improper Handling of Case Sensitivity vulnerability exists that could cause remote
code execution when manipulating internal methods through Java RMI interface.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-78: Improper Handling of Case Sensitivity vulnerability exists that could cause remote
code execution when manipulating internal methods through Java RMI interface.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7p8q-cvq9-54g6</guid>
    </item>
    <item>
      <title>gsd-2023-29412</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-29412</link>
      <description>gsd-2023-29412</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-29412</guid>
    </item>
    <item>
      <title>ICSA-23-108-02 — Schneider Electric APC Easy UPS Online Monitoring Software (Update A)</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-108-02</link>
      <description>&lt;p&gt;A vulnerability exists that could allow changes to administrative credentials, leading to potential remote code execution without requiring prior authentication on the Java RMI interface. Prior versions of Schneider Electric APC Easy UPS Online contain an OS Command Injection vulnerability that could cause remote code execution when manipulating internal methods through Java RMI interface. A vulnerability exists that could cause a denial-of-service condition when accessed by an unauthenticated user on the Schneider UPS Monitor service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability exists that could allow changes to administrative credentials, leading to potential remote code execution without requiring prior authentication on the Java RMI interface. Prior versions of Schneider Electric APC Easy UPS Online contain an OS Command Injection vulnerability that could cause remote code execution when manipulating internal methods through Java RMI interface. A vulnerability exists that could cause a denial-of-service condition when accessed by an unauthenticated user on the Schneider UPS Monitor service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-108-02</guid>
    </item>
    <item>
      <title>SEVD-2023-101-04 — Easy UPS Online Monitoring Software</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2023-101-04</link>
      <description>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in its Easy UPS Online Monitoring Software, known as APC Easy UPS Online Monitoring Software, and Schneider Electric UPS Online Monitoring Software known as Schneider SP Series UPS Online Monitoring Software in China.&lt;/p&gt;
&lt;p&gt;The Easy UPS Online Monitoring Software is used to configure and manage Easy UPS products.&lt;/p&gt;
&lt;p&gt;Failure to apply the remediations provided below may risk remote code execution, escalation of privileges, or authentication bypass, which could result in execution of malicious web code or loss of device functionality.&lt;/p&gt;
&lt;p&gt;June 2024 Update: Vulnerability description for CVE-2023-29412 has been updated. CWE-78 is correct, but the initial description didn’t match with this CWE ID. Remediation instructions were updated to clarify support status.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of multiple vulnerabilities in its Easy UPS Online Monitoring Software, known as APC Easy UPS Online Monitoring Software, and Schneider Electric UPS Online Monitoring Software known as Schneider SP Series UPS Online Monitoring Software in China.&lt;/p&gt;
&lt;p&gt;The Easy UPS Online Monitoring Software is used to configure and manage Easy UPS products.&lt;/p&gt;
&lt;p&gt;Failure to apply the remediations provided below may risk remote code execution, escalation of privileges, or authentication bypass, which could result in execution of malicious web code or loss of device functionality.&lt;/p&gt;
&lt;p&gt;June 2024 Update: Vulnerability description for CVE-2023-29412 has been updated. CWE-78 is correct, but the initial description didn’t match with this CWE ID. Remediation instructions were updated to clarify support status.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2023-101-04</guid>
    </item>
  </channel>
</rss>
