<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 12:56:09 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-190367</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-190367</link>
      <description>EUVD-2026-190367</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-190367</guid>
    </item>
    <item>
      <title>fkie_cve-2023-46144</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-46144</link>
      <description>&lt;p&gt;A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-46144</guid>
    </item>
    <item>
      <title>GHSA-hqgv-wx4f-4hmj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-hqgv-wx4f-4hmj</link>
      <description>&lt;p&gt;A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-hqgv-wx4f-4hmj</guid>
    </item>
    <item>
      <title>gsd-2023-46144</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-46144</link>
      <description>gsd-2023-46144</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-46144</guid>
    </item>
    <item>
      <title>VDE-2023-058 — Phoenix Contact: PLCnext Control prone to download of code without integrity check</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2023-058</link>
      <description>&lt;p&gt;PLCnext Control provides authentication and integrity check for the application.An authenticated, skilled attacker might be able to manipulate the application (e.g.: logic files, executable logic, configurations) in a special crafted way that the integrity check will not be able to recognize these tampering attempts which are then difficult to remove.
PLCnext Engineer warns users if the PLC logic is different from the current loaded project when Online mode is activated. In addition, during loading an application on the PLC, a Project Integrity Warning logging entry is generated.A skilled attacker might be able to manipulate the application in a special crafted way that the integrity check will not be able to recognize tampering attempts.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;PLCnext Control provides authentication and integrity check for the application.An authenticated, skilled attacker might be able to manipulate the application (e.g.: logic files, executable logic, configurations) in a special crafted way that the integrity check will not be able to recognize these tampering attempts which are then difficult to remove.
PLCnext Engineer warns users if the PLC logic is different from the current loaded project when Online mode is activated. In addition, during loading an application on the PLC, a Project Integrity Warning logging entry is generated.A skilled attacker might be able to manipulate the application in a special crafted way that the integrity check will not be able to recognize tampering attempts.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2023-058</guid>
    </item>
  </channel>
</rss>
