<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 10:40:36 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-08016</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-08016</link>
      <description>bdu:2023-08016</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-08016</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0935 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;les produits Siemens&lt;/span&gt;. Certaines d'entr…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0935</link>
      <description>certfr-2023-avi-0935</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0935</guid>
    </item>
    <item>
      <title>cnvd-2023-86336</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-86336</link>
      <description>cnvd-2023-86336</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-86336</guid>
    </item>
    <item>
      <title>EUVD-2026-209572</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-209572</link>
      <description>EUVD-2026-209572</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-209572</guid>
    </item>
    <item>
      <title>fkie_cve-2023-46098</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-46098</link>
      <description>&lt;p&gt;A vulnerability has been identified in SIMATIC PCS neo (All versions &amp;lt; V4.1). When accessing the Information Server from affected products, the products use an overly permissive CORS policy. This could allow an attacker to trick a legitimate user to trigger unwanted behavior.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SIMATIC PCS neo (All versions &amp;lt; V4.1). When accessing the Information Server from affected products, the products use an overly permissive CORS policy. This could allow an attacker to trick a legitimate user to trigger unwanted behavior.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-46098</guid>
    </item>
    <item>
      <title>GHSA-qgvx-gh8h-gmqj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qgvx-gh8h-gmqj</link>
      <description>&lt;p&gt;A vulnerability has been identified in SIMATIC PCS neo (All versions &amp;lt; V4.1). When accessing the Information Server from affected products, the products use an overly permissive CORS policy. This could allow an attacker to trick a legitimate user to trigger unwanted behavior.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in SIMATIC PCS neo (All versions &amp;lt; V4.1). When accessing the Information Server from affected products, the products use an overly permissive CORS policy. This could allow an attacker to trick a legitimate user to trigger unwanted behavior.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qgvx-gh8h-gmqj</guid>
    </item>
    <item>
      <title>gsd-2023-46098</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-46098</link>
      <description>gsd-2023-46098</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-46098</guid>
    </item>
    <item>
      <title>ICSA-23-320-06 — Siemens SIMATIC PCS neo</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-320-06</link>
      <description>&lt;p&gt;The PUD Manager of affected products does not properly authenticate users in the PUD Manager web service. This could allow an unauthenticated adjacent attacker to generate a privileged token and upload additional documents. The PUD Manager of affected products does not properly neutralize user provided inputs. This could allow an authenticated adjacent attacker to execute SQL statements in the underlying database. When accessing the Information Server from affected products, the products use an overly permissive CORS policy. This could allow an attacker to trick a legitimate user to trigger unwanted behavior. There is a stored cross-site scripting vulnerability in the Administration Console of the affected product, that could allow an attacker with high privileges to inject Javascript code into the application that is later executed by another legitimate user.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The PUD Manager of affected products does not properly authenticate users in the PUD Manager web service. This could allow an unauthenticated adjacent attacker to generate a privileged token and upload additional documents. The PUD Manager of affected products does not properly neutralize user provided inputs. This could allow an authenticated adjacent attacker to execute SQL statements in the underlying database. When accessing the Information Server from affected products, the products use an overly permissive CORS policy. This could allow an attacker to trick a legitimate user to trigger unwanted behavior. There is a stored cross-site scripting vulnerability in the Administration Console of the affected product, that could allow an attacker with high privileges to inject Javascript code into the application that is later executed by another legitimate user.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-320-06</guid>
    </item>
  </channel>
</rss>
