<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 10:47:32 +0000</lastBuildDate>
    <item>
      <title>certfr-2025-avi-0112 — Une vulnérabilité a été découverte dans les produits Schneider Electric. Elle permet à un attaquant de provoquer une él…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0112</link>
      <description>certfr-2025-avi-0112</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0112</guid>
    </item>
    <item>
      <title>EUVD-2026-215428</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-215428</link>
      <description>EUVD-2026-215428</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-215428</guid>
    </item>
    <item>
      <title>fkie_cve-2025-0327</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-0327</link>
      <description>&lt;p&gt;CWE-269: Improper Privilege Management vulnerability exists for two services (of which one managing audit
trail data and the other acting as server managing client request) that could cause a loss of Confidentiality,
Integrity and Availability of engineering workstation when an attacker with standard privilege modifies the
executable path of the windows services. To be exploited, services need to be restarted.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;CWE-269: Improper Privilege Management vulnerability exists for two services (of which one managing audit
trail data and the other acting as server managing client request) that could cause a loss of Confidentiality,
Integrity and Availability of engineering workstation when an attacker with standard privilege modifies the
executable path of the windows services. To be exploited, services need to be restarted.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-0327</guid>
    </item>
    <item>
      <title>GHSA-4v4v-fcfx-x6mg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4v4v-fcfx-x6mg</link>
      <description>&lt;p&gt;CWE-269: Improper Privilege Management vulnerability exists for two services (of which one managing audit
trail data and the other acting as server managing client request) that could cause a loss of Confidentiality,
Integrity and Availability of engineering workstation when an attacker with standard privilege modifies the
executable path of the windows services. To be exploited, services need to be restarted.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;CWE-269: Improper Privilege Management vulnerability exists for two services (of which one managing audit
trail data and the other acting as server managing client request) that could cause a loss of Confidentiality,
Integrity and Availability of engineering workstation when an attacker with standard privilege modifies the
executable path of the windows services. To be exploited, services need to be restarted.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4v4v-fcfx-x6mg</guid>
    </item>
    <item>
      <title>ICSA-25-079-01 — Schneider Electric EcoStruxure (Update A)</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-25-079-01</link>
      <description>&lt;p&gt;Schneider Electric is aware of a vulnerability in its EcoStruxure Process Expert, EcoStruxure Process Expert for AVEVA System Platform products. The EcoStruxure Process Expert, EcoStruxure Process Expert for AVEVA System Platform products are engineering tools that facilitates and automates the design, maintenance, commissioning, and operation of Control projects for Modicon controllers and the associated Supervision projects for SCADA software regrouped in a system.. Failure to apply the Fix/Mitigations provided below may risk a local privilege escalation, which could result in loss of confidentiality, integrity and availability of the engineering workstation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of a vulnerability in its EcoStruxure Process Expert, EcoStruxure Process Expert for AVEVA System Platform products. The EcoStruxure Process Expert, EcoStruxure Process Expert for AVEVA System Platform products are engineering tools that facilitates and automates the design, maintenance, commissioning, and operation of Control projects for Modicon controllers and the associated Supervision projects for SCADA software regrouped in a system.. Failure to apply the Fix/Mitigations provided below may risk a local privilege escalation, which could result in loss of confidentiality, integrity and availability of the engineering workstation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-25-079-01</guid>
    </item>
    <item>
      <title>SEVD-2025-042-03 — EcoStruxure™ Process Expert, EcoStruxure™ Process Expert for AVEVA System Platform</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2025-042-03</link>
      <description>&lt;p&gt;Schneider Electric is aware of a vulnerability in its EcoStruxure™ Process Expert, EcoStruxure™ Process &#13;
Expert for AVEVA System Platform products. &#13;
The EcoStruxure™ Process Expert, EcoStruxure™ Process Expert for AVEVA System Platform products are &#13;
engineering tools that facilitates and automates the design, maintenance, commissioning, and operation of &#13;
Control projects for Modicon controllers and the associated Supervision projects for SCADA software &#13;
regrouped in a system.. &#13;
Failure to apply the Fix/Mitigations provided below may risk a local privilege escalation, which could result in &#13;
loss of confidentiality, integrity and availability of the engineering workstation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of a vulnerability in its EcoStruxure™ Process Expert, EcoStruxure™ Process &#13;
Expert for AVEVA System Platform products. &#13;
The EcoStruxure™ Process Expert, EcoStruxure™ Process Expert for AVEVA System Platform products are &#13;
engineering tools that facilitates and automates the design, maintenance, commissioning, and operation of &#13;
Control projects for Modicon controllers and the associated Supervision projects for SCADA software &#13;
regrouped in a system.. &#13;
Failure to apply the Fix/Mitigations provided below may risk a local privilege escalation, which could result in &#13;
loss of confidentiality, integrity and availability of the engineering workstation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2025-042-03</guid>
    </item>
  </channel>
</rss>
