<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 22:53:17 +0000</lastBuildDate>
    <item>
      <title>CVE-2025-41690 — Endress+Hauser: Proline 10 Maintenance credentials may be exposed under certain conditions</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2025-41690</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Endress+Hauser Promag 10 with HART, Endress+Hauser Promag 10 with IO-Link, Endress+Hauser Promag 10 with Modbus, Endress+Hauser Promass 10 with HART, Endress+Hauser Promass 10 with IO-Link, Endress+Hauser Promass 10 with Modbus&lt;/p&gt;
&lt;p&gt;A low-privileged attacker in bluetooth range may be able to access the password of a higher-privilege user (Maintenance) by viewing the device’s event log. This vulnerability could allow the Operator to authenticate as the Maintenance user, thereby gaining unauthorized access to sensitive configuration settings and the ability to modify device parameters.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Endress+Hauser Promag 10 with HART, Endress+Hauser Promag 10 with IO-Link, Endress+Hauser Promag 10 with Modbus, Endress+Hauser Promass 10 with HART, Endress+Hauser Promass 10 with IO-Link, Endress+Hauser Promass 10 with Modbus&lt;/p&gt;
&lt;p&gt;A low-privileged attacker in bluetooth range may be able to access the password of a higher-privilege user (Maintenance) by viewing the device’s event log. This vulnerability could allow the Operator to authenticate as the Maintenance user, thereby gaining unauthorized access to sensitive configuration settings and the ability to modify device parameters.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2025-41690</guid>
    </item>
  </channel>
</rss>
