<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 13:02:13 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-245799</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-245799</link>
      <description>EUVD-2026-245799</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-245799</guid>
    </item>
    <item>
      <title>fkie_cve-2025-41647</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-41647</link>
      <description>&lt;p&gt;A local, low-privileged attacker can learn the password of the connected controller in PLC Designer V4 due to an incorrect implementation that results in the password being displayed in plain text under special conditions.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A local, low-privileged attacker can learn the password of the connected controller in PLC Designer V4 due to an incorrect implementation that results in the password being displayed in plain text under special conditions.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-41647</guid>
    </item>
    <item>
      <title>GHSA-q6j3-9p27-59xc</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q6j3-9p27-59xc</link>
      <description>&lt;p&gt;A local, low-privileged attacker can learn the password of the connected controller in PLC Designer V4 due to an incorrect implementation that results in the password being displayed in plain text under special conditions.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A local, low-privileged attacker can learn the password of the connected controller in PLC Designer V4 due to an incorrect implementation that results in the password being displayed in plain text under special conditions.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q6j3-9p27-59xc</guid>
    </item>
    <item>
      <title>VDE-2025-043 — Lenze: PLC Designer V4 with insecure storage of sensitive information</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2025-043</link>
      <description>&lt;p&gt;A security vulnerability was discovered in the PLC Designer V4 in the version 4.0.0 where the programmer of a Controller can set a password for the connected device. Here it is possible in an interface of the PLC Designer V4 for the programmer to enter a password for the Device. There is a special constellation where the password entered appears in plain text. Only the display in the tool is affected and not the management of the password on the device. This vulnerability of PLC Designer V4 only occurs in combination with the devices c430 controller, c520 controller and c550 controller and not in combination with other devices, as this functionality is only used here. It is generally recommended that all users update to 4.0.1, but especially all users who operate PLC Designer V4 in combination with the controllers mentioned.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A security vulnerability was discovered in the PLC Designer V4 in the version 4.0.0 where the programmer of a Controller can set a password for the connected device. Here it is possible in an interface of the PLC Designer V4 for the programmer to enter a password for the Device. There is a special constellation where the password entered appears in plain text. Only the display in the tool is affected and not the management of the password on the device. This vulnerability of PLC Designer V4 only occurs in combination with the devices c430 controller, c520 controller and c550 controller and not in combination with other devices, as this functionality is only used here. It is generally recommended that all users update to 4.0.1, but especially all users who operate PLC Designer V4 in combination with the controllers mentioned.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2025-043</guid>
    </item>
  </channel>
</rss>
