<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 22:40:21 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-05524</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-05524</link>
      <description>bdu:2023-05524</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-05524</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0732 — Une vulnérabilité a été découverte dans &lt;span class="textit"&gt;les
produits Schneider&lt;/span&gt;. Elle permet à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0732</link>
      <description>certfr-2023-avi-0732</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0732</guid>
    </item>
    <item>
      <title>EUVD-2026-219674</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-219674</link>
      <description>EUVD-2026-219674</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-219674</guid>
    </item>
    <item>
      <title>fkie_cve-2023-4516</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-4516</link>
      <description>&lt;p&gt;A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update
Service that could allow a local attacker to change update source, potentially leading to remote
code execution when the attacker force an update containing malicious content.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update
Service that could allow a local attacker to change update source, potentially leading to remote
code execution when the attacker force an update containing malicious content.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-4516</guid>
    </item>
    <item>
      <title>GHSA-4c87-xqpv-r7h5</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4c87-xqpv-r7h5</link>
      <description>&lt;p&gt;A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update
Service that could allow a local attacker to change update source, potentially leading to remote
code execution when the attacker force an update containing malicious content.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update
Service that could allow a local attacker to change update source, potentially leading to remote
code execution when the attacker force an update containing malicious content.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4c87-xqpv-r7h5</guid>
    </item>
    <item>
      <title>gsd-2023-4516</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-4516</link>
      <description>gsd-2023-4516</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-4516</guid>
    </item>
    <item>
      <title>ICSA-23-220-01 — Schneider Electric IGSS</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-220-01</link>
      <description>&lt;p&gt;A deserialization of untrusted data vulnerability that could cause an interpretation of malicious payload data exists in the Dashboard module, which could lead to arbitrary code execution if an attacker gets the user to open a malicious file. A missing authentication for critical function vulnerability that could allow a local attacker to change the update source exists in the IGSS Update Service, which could lead to remote code execution the attacker force an update containing malicious content.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A deserialization of untrusted data vulnerability that could cause an interpretation of malicious payload data exists in the Dashboard module, which could lead to arbitrary code execution if an attacker gets the user to open a malicious file. A missing authentication for critical function vulnerability that could allow a local attacker to change the update source exists in the IGSS Update Service, which could lead to remote code execution the attacker force an update containing malicious content.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-220-01</guid>
    </item>
    <item>
      <title>SEVD-2023-255-01 — ​​​IGSS (Interactive Graphical SCADA System)​​</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2023-255-01</link>
      <description>&lt;p&gt;Schneider Electric is aware of ​a vulnerability​ in its ​Update Service for the IGSS​ (Interactive Graphical SCADA System) product.  &#13;
&#13;
The IGSS product is a state-of-the art SCADA system used for monitoring and controlling industrial processes. The IGSS Update Service handles IGSS Software to be updated. &#13;
&#13;
Failure to apply the remediation provided below may risk ​remote code execution​, which could result in a variety of issues including loss of control of the SCADA System with IGSS running in production mode&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of ​a vulnerability​ in its ​Update Service for the IGSS​ (Interactive Graphical SCADA System) product.  &#13;
&#13;
The IGSS product is a state-of-the art SCADA system used for monitoring and controlling industrial processes. The IGSS Update Service handles IGSS Software to be updated. &#13;
&#13;
Failure to apply the remediation provided below may risk ​remote code execution​, which could result in a variety of issues including loss of control of the SCADA System with IGSS running in production mode&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2023-255-01</guid>
    </item>
  </channel>
</rss>
