<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 01:18:56 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-06609</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-06609</link>
      <description>bdu:2025-06609</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-06609</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0397 — De multiples vulnérabilités ont été découvertes dans les produits Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0397</link>
      <description>certfr-2025-avi-0397</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0397</guid>
    </item>
    <item>
      <title>EUVD-2026-239146</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-239146</link>
      <description>EUVD-2026-239146</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-239146</guid>
    </item>
    <item>
      <title>fkie_cve-2024-23815</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-23815</link>
      <description>&lt;p&gt;A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to Desigo CC server is allowed from networks outside of a highly protected zone), Desigo CC (All versions if access from Installed Clients to Desigo CC server is only allowed within highly protected zones). The affected server application fails to authenticate specific client requests. Modification of the client binary could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database via the event port (default: 4998/tcp)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to Desigo CC server is allowed from networks outside of a highly protected zone), Desigo CC (All versions if access from Installed Clients to Desigo CC server is only allowed within highly protected zones). The affected server application fails to authenticate specific client requests. Modification of the client binary could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database via the event port (default: 4998/tcp)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-23815</guid>
    </item>
    <item>
      <title>GHSA-xgrg-cw4v-4h6g</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xgrg-cw4v-4h6g</link>
      <description>&lt;p&gt;A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to Desigo CC server is allowed from networks outside of a highly protected zone), Desigo CC (All versions if access from Installed Clients to Desigo CC server is only allowed within highly protected zones). The affected server application fails to authenticate specific client requests. Modification of the client binary could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database via the event port (default: 4998/tcp)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to Desigo CC server is allowed from networks outside of a highly protected zone), Desigo CC (All versions if access from Installed Clients to Desigo CC server is only allowed within highly protected zones). The affected server application fails to authenticate specific client requests. Modification of the client binary could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database via the event port (default: 4998/tcp)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xgrg-cw4v-4h6g</guid>
    </item>
    <item>
      <title>gsd-2024-23815</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-23815</link>
      <description>gsd-2024-23815</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-23815</guid>
    </item>
    <item>
      <title>ICSA-25-135-04 — Siemens Desigo</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-25-135-04</link>
      <description>&lt;p&gt;The affected server application fails to authenticate specific client requests. Modification of the client binary could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database via the event port (default: 4998/tcp) If access from Installed Clients to Desigo CC server is only allowed within highly protected zones:&#13;
Exploitation of this issue requires an attacker to get access to an Installed Client application in the &amp;#34;highly protected zone&amp;#34; (i.e. a physically separated private network), and bypass the hardening measures as described by Desigo CC Cybersecurity Guideline.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The affected server application fails to authenticate specific client requests. Modification of the client binary could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database via the event port (default: 4998/tcp) If access from Installed Clients to Desigo CC server is only allowed within highly protected zones:&#13;
Exploitation of this issue requires an attacker to get access to an Installed Client application in the &amp;#34;highly protected zone&amp;#34; (i.e. a physically separated private network), and bypass the hardening measures as described by Desigo CC Cybersecurity Guideline.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-25-135-04</guid>
    </item>
  </channel>
</rss>
