<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from csaf_carlogavazziautomation</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 10:07:14 +0000</lastBuildDate>
    <item>
      <title>VDE-2026-028 — Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2026-028</link>
      <description>&lt;p&gt;The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2026-028</guid>
      <pubDate>Wed, 16 Sep 2026 08:00:00 +0000</pubDate>
    </item>
    <item>
      <title>VDE-2022-029 — Carlo Gavazzi Controls: Multiple Vulnerabilities in Controller UWP 3.0</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2022-029</link>
      <description>&lt;p&gt;The UWP 3.0 family of Monitoring Gateways and Controllers and the CPY Car Park Server are affected by multiple vulnerabilities in their set-up software, runtime firmware, embedded Web interface.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The UWP 3.0 family of Monitoring Gateways and Controllers and the CPY Car Park Server are affected by multiple vulnerabilities in their set-up software, runtime firmware, embedded Web interface.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2022-029</guid>
      <pubDate>Mon, 26 Sep 2022 08:00:00 +0000</pubDate>
    </item>
  </channel>
</rss>
