<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 03:40:04 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-327763</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-327763</link>
      <description>EUVD-2026-327763</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-327763</guid>
    </item>
    <item>
      <title>fkie_cve-2026-9307</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-9307</link>
      <description>&lt;p&gt;A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller&amp;#39;s web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to Denial-of-Service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller&amp;#39;s web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to Denial-of-Service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-9307</guid>
    </item>
    <item>
      <title>GHSA-gpr8-p742-hw62</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-gpr8-p742-hw62</link>
      <description>&lt;p&gt;A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller&amp;#39;s web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to Denial-of-Service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller&amp;#39;s web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to Denial-of-Service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-gpr8-p742-hw62</guid>
    </item>
    <item>
      <title>ICSA-26-167-04 — Rockwell Automation CompactLogix</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-26-167-04</link>
      <description>&lt;p&gt;A security issue exists within 1769 CompactLogix controllers due to the missing validation of sequence numbers and source IP addresses in the CIP protocol. This allows attacker to abuse the exposed Connection ID&amp;#39;s visible on the web interface to perform denial-of-service attacks, resulting in a minor fault. A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller&amp;#39;s web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to Denial-of-Service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A security issue exists within 1769 CompactLogix controllers due to the missing validation of sequence numbers and source IP addresses in the CIP protocol. This allows attacker to abuse the exposed Connection ID&amp;#39;s visible on the web interface to perform denial-of-service attacks, resulting in a minor fault. A sensitive information disclosure security issue exists within the affected CompactLogix controllers. The controller&amp;#39;s web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to Denial-of-Service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-26-167-04</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1967 — Rockwell Automation CompactLogix 5370 und ControlLogix 5570 Controllers: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1967</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Rockwell Automation CompactLogix 5370 und ControlLogix 5570 Controllers ausnutzen, um einen Denial of Service Angriff durchzuführen und vertrauliche Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Rockwell Automation CompactLogix 5370 und ControlLogix 5570 Controllers ausnutzen, um einen Denial of Service Angriff durchzuführen und vertrauliche Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1967</guid>
    </item>
  </channel>
</rss>
