<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 01:52:33 +0000</lastBuildDate>
    <item>
      <title>bdu:2022-02926</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-02926</link>
      <description>bdu:2022-02926</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-02926</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0014 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider Electric. Certaines d'entre elles permetten…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0014</link>
      <description>certfr-2023-avi-0014</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0014</guid>
    </item>
    <item>
      <title>cnvd-2023-94706</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-94706</link>
      <description>cnvd-2023-94706</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-94706</guid>
    </item>
    <item>
      <title>EUVD-2026-230914</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-230914</link>
      <description>EUVD-2026-230914</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-230914</guid>
    </item>
    <item>
      <title>fkie_cve-2022-1467</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-1467</link>
      <description>&lt;p&gt;Windows OS can be configured to overlay a “language bar” on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Windows OS can be configured to overlay a “language bar” on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-1467</guid>
    </item>
    <item>
      <title>GHSA-2hvg-pfw9-r56c</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2hvg-pfw9-r56c</link>
      <description>&lt;p&gt;Windows OS can be configured to overlay a “language bar” on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Windows OS can be configured to overlay a “language bar” on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2hvg-pfw9-r56c</guid>
    </item>
    <item>
      <title>gsd-2022-1467</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-1467</link>
      <description>gsd-2022-1467</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-1467</guid>
    </item>
    <item>
      <title>ICSA-22-130-05 — AVEVA InTouch Access Anywhere and Plant SCADA Access Anywhere</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-22-130-05</link>
      <description>&lt;p&gt;Windows OS can be configured to overlay a language bar on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.CVE-2022-1467 has been assigned to this vulnerability. A CVSS v3 base score of 7.4 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Windows OS can be configured to overlay a language bar on top of any application. When this OS functionality is enabled, the OS language bar UI will be viewable in the browser alongside the InTouch Access Anywhere and Plant SCADA Access Anywhere applications. It is possible to manipulate the Windows OS language bar to launch an OS command prompt, resulting in a context-escape from application into OS.CVE-2022-1467 has been assigned to this vulnerability. A CVSS v3 base score of 7.4 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-22-130-05</guid>
    </item>
    <item>
      <title>SEVD-2023-010-04 — EcoStruxure™ Power SCADA Anywhere</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2023-010-04</link>
      <description>&lt;p&gt;Schneider Electric is aware of a vulnerability in its EcoStruxure™ Power SCADA Anywhere product.&#13;
EcoStruxure™ Power SCADA Anywhere is an on-premises software that provides remote web browser access to the EcoStruxure Power Operation desktop HMI client application and its operator interface.&#13;
Failure to apply with the mitigations provided below may risk an authenticated user to escape from the context of EcoStruxure™ Power SCADA Anywhere into the Operating System (OS), which could result in arbitrary OS commands being executed on the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of a vulnerability in its EcoStruxure™ Power SCADA Anywhere product.&#13;
EcoStruxure™ Power SCADA Anywhere is an on-premises software that provides remote web browser access to the EcoStruxure Power Operation desktop HMI client application and its operator interface.&#13;
Failure to apply with the mitigations provided below may risk an authenticated user to escape from the context of EcoStruxure™ Power SCADA Anywhere into the Operating System (OS), which could result in arbitrary OS commands being executed on the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2023-010-04</guid>
    </item>
  </channel>
</rss>
