<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:49:44 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-369555</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-369555</link>
      <description>EUVD-2026-369555</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-369555</guid>
    </item>
    <item>
      <title>fkie_cve-2026-27562</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-27562</link>
      <description>&lt;p&gt;A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request with admin credentials allowing execution of commands with root privileges on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request with admin credentials allowing execution of commands with root privileges on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-27562</guid>
    </item>
    <item>
      <title>GHSA-2wvv-pq2h-2gcr</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2wvv-pq2h-2gcr</link>
      <description>&lt;p&gt;A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request with admin credentials allowing execution of commands with root privileges on the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request with admin credentials allowing execution of commands with root privileges on the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2wvv-pq2h-2gcr</guid>
    </item>
    <item>
      <title>VDE-2026-014 — Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2026-014</link>
      <description>&lt;p&gt;The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2026-014</guid>
    </item>
    <item>
      <title>VDE-2026-027 — Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2026-027</link>
      <description>&lt;p&gt;The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2026-027</guid>
    </item>
    <item>
      <title>VDE-2026-028 — Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2026-028</link>
      <description>&lt;p&gt;The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2026-028</guid>
    </item>
  </channel>
</rss>
