<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Newest Tenable OT Security Plugins from Tenable</title>
        <link>https://www.tenable.com/plugins/feeds?sort=newest&amp;type=ot</link>
        <description>Get the latest plugin updates from Tenable</description>
        <lastBuildDate>Tue, 15 Sep 2026 16:24:12 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>Tenable Plugins</generator>
        <image>
            <title>Newest Tenable OT Security Plugins from Tenable</title>
            <url>https://www.tenable.com/themes/custom/tenable/img/favicons/apple-touch-icon.png</url>
            <link>https://www.tenable.com/plugins/feeds?sort=newest&amp;type=ot</link>
        </image>
        <copyright>Copyright 2026 Tenable, Inc. All rights reserved.</copyright>
        <atom:link href="https://www.tenable.com/plugins/feeds?sort=newest&amp;type=ot" rel="self" type="application/rss+xml"/>
        <item>
            <title><![CDATA[LOYTEC L-IP BACnet/IP Routers Stack-based Buffer Overflow (CVE-2026-55728)]]></title>
            <link>https://www.tenable.com/plugins/ot/505948</link>
            <guid>https://www.tenable.com/plugins/ot/505948</guid>
            <pubDate>Mon, 07 Sep 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505948 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The 'cmd_ipaddr_conflict' subcommand of the SUID-root '/usr/bin/ltsudo' utility on a LOYTEC L-IP BACnet/IP router copies a user-supplied network interface name into a fixed 20-byte stack buffer using 'strcpy()' without bounds checking.<br /></span><span>A 'superadmin'-group attacker can supply an overly long interface name to overflow the buffer, aborting the SUID-root process and potentially gaining leverage toward privilege escalation.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to firmware version 8.4.18 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505948">https://www.tenable.com/plugins/ot/505948</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[LOYTEC L-IP BACnet/IP Routers Unchecked Input for Loop Condition (CVE-2026-55731)]]></title>
            <link>https://www.tenable.com/plugins/ot/505947</link>
            <guid>https://www.tenable.com/plugins/ot/505947</guid>
            <pubDate>Mon, 07 Sep 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505947 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The SNMP agent of a LOYTEC L-IP BACnet/IP router does not bound the loop condition it derives from an SNMP GETNEXT request's OID. An unauthenticated remote attacker can send a crafted GETNEXT request containing an oversized OID component to drive the agent into a long-running loop, exhausting CPU resources and causing a persistent denial of service.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to firmware version 8.4.18 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505947">https://www.tenable.com/plugins/ot/505947</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[LOYTEC L-IP BACnet/IP Routers Exposure of Sensitive Information to an Unauthorized Actor (CVE-2015-7906)]]></title>
            <link>https://www.tenable.com/plugins/ot/505944</link>
            <guid>https://www.tenable.com/plugins/ot/505944</guid>
            <pubDate>Mon, 07 Sep 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505944 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>LOYTEC L-IP BACnet/IP router devices allow a remote, unauthenticated attacker to download a device backup file that exposes the hash of the device's user passwords.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Update the product to firmware V6.02 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505944">https://www.tenable.com/plugins/ot/505944</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Johnson Controls Metasys 12.x / 13.x / 14.x < 14.1.5 / 15.x < 15.0.1 Cross-Site Scripting (CVE-2026-34491)]]></title>
            <link>https://www.tenable.com/plugins/ot/505941</link>
            <guid>https://www.tenable.com/plugins/ot/505941</guid>
            <pubDate>Mon, 24 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505941 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A low-privilege user can inject a malicious XSS payload into the Johnson Controls Metasys UI via a crafted URL. The payload persists across logins and executes in the browser context of other users, including administrators.<br /></span><span>Successful exploitation of this vulnerability could allow a low-privilege user or attacker to inject a persistent malicious payload via a crafted URL that executes in the context of other users' sessions, including administrators, potentially leading to session hijacking and unauthorized access.<br /></span><span><br /></span><span>The vulnerability was introduced at Metasys version 12; Metasys 11 and prior are not affected, and Metasys 16.0 was fixed prior to release.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Upgrade to Metasys version 16.0 or apply the latest available patch for your version (15.0.1 or 14.1.5 when available). Metasys 12 and Metasys 13 are end of support; update to a later version.<br /></span><span><br /></span><span>For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI-PSA-2026-11.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505941">https://www.tenable.com/plugins/ot/505941</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco ASA and FTD Insufficient Verification of Data Authenticity (CVE-2022-20795)]]></title>
            <link>https://www.tenable.com/plugins/ot/505940</link>
            <guid>https://www.tenable.com/plugins/ot/505940</guid>
            <pubDate>Tue, 11 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505940 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in the implementation of the Datagram TLS (DTLS) protocol in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause high CPU utilization, resulting in a denial of service (DoS) condition. This vulnerability is due to suboptimal processing that occurs when establishing a DTLS tunnel as part of an AnyConnect SSL VPN connection. An attacker could exploit this vulnerability by sending a steady stream of crafted DTLS traffic to an affected device. A successful exploit could allow the attacker to exhaust resources on the affected VPN headend device. This could cause existing DTLS tunnels to stop passing traffic and prevent new DTLS tunnels from establishing, resulting in a DoS condition.<br /></span><span>Note: When the attack traffic stops, the device recovers gracefully.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505940">https://www.tenable.com/plugins/ot/505940</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Schneider Electric SCADAPack and RemoteConnect Improper Check For Unusual or Exceptional Conditions (CVE-2026-0667)]]></title>
            <link>https://www.tenable.com/plugins/ot/505939</link>
            <guid>https://www.tenable.com/plugins/ot/505939</guid>
            <pubDate>Thu, 06 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505939 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-754 Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause remote code execution, denial of service, and loss of confidentiality and integrity of the RTU controller when an unauthenticated attacker sends specially crafted Modbus TCP packets to the device.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505939">https://www.tenable.com/plugins/ot/505939</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Schneider Electric EcoStruxure Panel Server Initialization of a Resource with an Insecure Default (CVE-2026-6866)]]></title>
            <link>https://www.tenable.com/plugins/ot/505938</link>
            <guid>https://www.tenable.com/plugins/ot/505938</guid>
            <pubDate>Tue, 04 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505938 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-1188 Initialization of a Resource with an Insecure Default vulnerability exists that could cause unauthorized disclosure of sensitive information when credentials revert to initial settings in rare circumstances, enabling unauthorized authentication using known credentials.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505938">https://www.tenable.com/plugins/ot/505938</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Schneider Electric Modicon Controllers M241, M251, M258, and LMC058 Improper Neutralization of Input During Web Page Generation (CVE-2025-13902)]]></title>
            <link>https://www.tenable.com/plugins/ot/505937</link>
            <guid>https://www.tenable.com/plugins/ot/505937</guid>
            <pubDate>Tue, 04 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505937 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause condition where authenticated attackers can have a victim's browser run arbitrary JavaScript when the victim hovers over a maliciously crafted element on a web server containing the injected payload.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505937">https://www.tenable.com/plugins/ot/505937</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Classic Buffer Overflow (CVE-2019-6327)]]></title>
            <link>https://www.tenable.com/plugins/ot/505936</link>
            <guid>https://www.tenable.com/plugins/ot/505936</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505936 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>HP Color LaserJet Pro M280-M281 Multifunction Printer series (before v. 20190419), HP LaserJet Pro MFP M28-M31 Printer series (before v.<br /></span><span>20190426) may have an IPP Parser potentially vulnerable to Buffer Overflow.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505936">https://www.tenable.com/plugins/ot/505936</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Improper Verification of Cryptographic Signature (CVE-2019-6318)]]></title>
            <link>https://www.tenable.com/plugins/ot/505935</link>
            <guid>https://www.tenable.com/plugins/ot/505935</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505935 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>HP LaserJet Enterprise printers, HP PageWide Enterprise printers, HP LaserJet Managed printers, HP Officejet Enterprise printers have an insufficient solution bundle signature validation that potentially allows execution of arbitrary code.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505935">https://www.tenable.com/plugins/ot/505935</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Improper Verification of Cryptographic Signature (CVE-2018-5923)]]></title>
            <link>https://www.tenable.com/plugins/ot/505934</link>
            <guid>https://www.tenable.com/plugins/ot/505934</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505934 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505934">https://www.tenable.com/plugins/ot/505934</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Denial of Service (CVE-2013-6193)]]></title>
            <link>https://www.tenable.com/plugins/ot/505933</link>
            <guid>https://www.tenable.com/plugins/ot/505933</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505933 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Unspecified vulnerability on HP LaserJet M1522n and M2727; LaserJet Pro 100, 300, 400, CM1415fnw, CP1*, M121*, M1536dnf, and P1*; Color LaserJet CM* and CP*; and TopShot LaserJet Pro M275 printers allows remote attackers to cause a denial of service via unknown vectors.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505933">https://www.tenable.com/plugins/ot/505933</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Cryptographic Issues (CVE-2013-4828)]]></title>
            <link>https://www.tenable.com/plugins/ot/505932</link>
            <guid>https://www.tenable.com/plugins/ot/505932</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505932 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>HP LaserJet M4555, M525, and M725; LaserJet flow MFP M525c; LaserJet Enterprise color flow MFP M575c; Color LaserJet CM4540, M575, and M775; and ScanJet Enterprise 8500fn1 FutureSmart devices do not properly encrypt PDF documents, which allows remote attackers to obtain sensitive information via unspecified vectors.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505932">https://www.tenable.com/plugins/ot/505932</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Classic Buffer Overflow (CVE-2023-27972)]]></title>
            <link>https://www.tenable.com/plugins/ot/505931</link>
            <guid>https://www.tenable.com/plugins/ot/505931</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505931 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Remote Code Execution.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505931">https://www.tenable.com/plugins/ot/505931</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Server-Side Request Forgery (CVE-2023-35175)]]></title>
            <link>https://www.tenable.com/plugins/ot/505930</link>
            <guid>https://www.tenable.com/plugins/ot/505930</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505930 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Certain HP LaserJet Pro print products are potentially vulnerable to Potential Remote Code Execution and/or Elevation of Privilege via Server-Side Request Forgery (SSRF) using the Web Service Eventing model.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505930">https://www.tenable.com/plugins/ot/505930</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Classic Buffer Overflow (CVE-2023-27971)]]></title>
            <link>https://www.tenable.com/plugins/ot/505929</link>
            <guid>https://www.tenable.com/plugins/ot/505929</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505929 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Elevation of Privilege.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505929">https://www.tenable.com/plugins/ot/505929</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Classic Buffer Overflow (CVE-2023-35176)]]></title>
            <link>https://www.tenable.com/plugins/ot/505928</link>
            <guid>https://www.tenable.com/plugins/ot/505928</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505928 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Denial of Service when using the backup & restore feature through the embedded web service on the device.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505928">https://www.tenable.com/plugins/ot/505928</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Out-of-bounds Write (CVE-2023-27973)]]></title>
            <link>https://www.tenable.com/plugins/ot/505927</link>
            <guid>https://www.tenable.com/plugins/ot/505927</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505927 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Certain HP LaserJet Pro print products are potentially vulnerable to Heap Overflow and/or Remote Code Execution.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505927">https://www.tenable.com/plugins/ot/505927</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Classic Buffer Overflow (CVE-2023-35178)]]></title>
            <link>https://www.tenable.com/plugins/ot/505926</link>
            <guid>https://www.tenable.com/plugins/ot/505926</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505926 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow when performing a GET request to scan jobs.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505926">https://www.tenable.com/plugins/ot/505926</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Printers Out-of-bounds Write (CVE-2023-35177)]]></title>
            <link>https://www.tenable.com/plugins/ot/505925</link>
            <guid>https://www.tenable.com/plugins/ot/505925</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505925 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Certain HP LaserJet Pro print products are potentially vulnerable to a stack-based buffer overflow related to the compact font format parser.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505925">https://www.tenable.com/plugins/ot/505925</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Konica Bizhub Multifunction Printers Insufficiently Protected Credentials (CVE-2022-29588)]]></title>
            <link>https://www.tenable.com/plugins/ot/505924</link>
            <guid>https://www.tenable.com/plugins/ot/505924</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505924 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Konica Minolta bizhub MFP devices before 2022-04-14 use cleartext password storage for the /var/log/nginx/html/ADMINPASS and /etc/shadow files.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505924">https://www.tenable.com/plugins/ot/505924</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco Small Business SPA500 Series IP Phones Local Code Execution (CVE-2019-15959)]]></title>
            <link>https://www.tenable.com/plugins/ot/505923</link>
            <guid>https://www.tenable.com/plugins/ot/505923</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505923 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in Cisco Small Business SPA500 Series IP Phones could allow a physically proximate attacker to execute arbitrary commands on the device. The vulnerability is due to the presence of development testing and verification scripts that remained on the device. An attacker could exploit this vulnerability by accessing the physical interface of a device and inserting a USB storage device. A successful exploit could allow the attacker to execute scripts on the device in an elevated security context.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505923">https://www.tenable.com/plugins/ot/505923</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Improper Input Validation (CVE-2013-6032)]]></title>
            <link>https://www.tenable.com/plugins/ot/505922</link>
            <guid>https://www.tenable.com/plugins/ot/505922</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505922 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>cgi-bin/postpf/cgi-bin/dynamic/config/config.html on Lexmark X94x before LC.BR.P142, X85x through LC4.BE.P487, X644 and X646 before LC2.MC.P374, X642 through LC2.MB.P318, W840 through LS.HA.P252, T64x before LS.ST.P344, X64xef through LC2.TI.P325, C935dn through LC.JO.P091, C920 through LS.TA.P152, C78x through LC.IO.P187, X78x through LC2.IO.P335, C77x through LC.CM.P052, X772 through LC2.TR.P291, C53x through LS.SW.P069, C52x through LS.FA.P150, 25xxN through LCL.CU.P114, N4000 through LC.MD.P119, N4050e through GO.GO.N206, N70xxe through LC.CO.N309, E450 through LM.SZ.P124, E350 through LE.PH.P129, and E250 through LE.PM.P126 printers allows remote attackers to remove the Password Protect administrative password via the vac.255.GENPASSWORD parameter.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505922">https://www.tenable.com/plugins/ot/505922</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Cross-site Scripting (CVE-2013-6033)]]></title>
            <link>https://www.tenable.com/plugins/ot/505921</link>
            <guid>https://www.tenable.com/plugins/ot/505921</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505921 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Multiple cross-site scripting (XSS) vulnerabilities on Lexmark W840 through LS.HA.P252, T64x before LS.ST.P344, C935dn through LC.JO.P091, C920 through LS.TA.P152, C53x through LS.SW.P069, C52x through LS.FA.P150, E450 through LM.SZ.P124, E350 through LE.PH.P129, and E250 through LE.PM.P126 printers allow remote authenticated users to inject arbitrary web script or HTML by using (1) SNMP or (2) the Embedded Web Server (EWS) to set the (a) Contact or (b) Location field.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505921">https://www.tenable.com/plugins/ot/505921</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[GeoVision GV-LPC2011 and GV-LPC2211 Cross-site Scripting (CVE-2026-7371)]]></title>
            <link>https://www.tenable.com/plugins/ot/505920</link>
            <guid>https://www.tenable.com/plugins/ot/505920</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505920 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted malicious url can lead to an arbitrary javascript code execution. An attacker can provide a crafted URL to trigger this vulnerability. Reflected XXS via the error message for requesting non-existing page.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505920">https://www.tenable.com/plugins/ot/505920</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[GeoVision GV-LPC2011 and GV-LPC2211 Cross-site Scripting (CVE-2026-42366)]]></title>
            <link>https://www.tenable.com/plugins/ot/505919</link>
            <guid>https://www.tenable.com/plugins/ot/505919</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505919 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted malicious url can lead to an arbitrary javascript code execution. An attacker can provide a crafted URL to trigger this vulnerability.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505919">https://www.tenable.com/plugins/ot/505919</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[GeoVision GV-LPC2011 and GV-LPC2211 Improper Neutralization of Special Elements used in an OS Command (CVE-2026-42364)]]></title>
            <link>https://www.tenable.com/plugins/ot/505918</link>
            <guid>https://www.tenable.com/plugins/ot/505918</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505918 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An os command injection vulnerability exists in the DdnsSetting.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted DDNS configuration can lead to arbitrary command execution. An attacker can modify a configuration value to trigger this vulnerability.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505918">https://www.tenable.com/plugins/ot/505918</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[GeoVision GV-LPC2011 and GV-LPC2211 Predictable from Observable State (CVE-2026-42365)]]></title>
            <link>https://www.tenable.com/plugins/ot/505917</link>
            <guid>https://www.tenable.com/plugins/ot/505917</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505917 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A guessable session cookie vulnerability exists in the Web Interface functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted series of HTTP requests can lead to an authentication bypas. An attacker can bruteforce session cookies to trigger this vulnerability.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505917">https://www.tenable.com/plugins/ot/505917</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Hanwha Vision Cameras OS Command Injection (CVE-2024-54012)]]></title>
            <link>https://www.tenable.com/plugins/ot/505916</link>
            <guid>https://www.tenable.com/plugins/ot/505916</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505916 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Penetration Testing engineers at Amazon discovered a vulnerability where the camera system failed to properly validate input, allowing specially crafted requests containing malicious commands to be executed on the device. The manufacturer has released patch firmware for the flaw; please refer to the manufacturer's report for details and workarounds.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505916">https://www.tenable.com/plugins/ot/505916</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Hanwha Vision Cameras Improper Input Validation (CVE-2024-54011)]]></title>
            <link>https://www.tenable.com/plugins/ot/505915</link>
            <guid>https://www.tenable.com/plugins/ot/505915</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505915 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Penetration Testing engineers at Amazon have discovered a flaw where the camera system fails to properly handle data supplied in certain requests, causing a service disruption. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505915">https://www.tenable.com/plugins/ot/505915</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Hanwha Vision Cameras Missing Authentication for Critical Function (CVE-2024-54013)]]></title>
            <link>https://www.tenable.com/plugins/ot/505914</link>
            <guid>https://www.tenable.com/plugins/ot/505914</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505914 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Penetration Testing engineers at Amazon have identified a security flaw related to request handling in the web server component that could, under certain conditions, lead to unintended access to protected functions. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505914">https://www.tenable.com/plugins/ot/505914</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Mitsubishi Electric MELSEC iQ-F Series EtherNet/IP module and Ethernet module Always-Incorrect Control Flow Implementation (CVE-2026-1874)]]></title>
            <link>https://www.tenable.com/plugins/ot/505913</link>
            <guid>https://www.tenable.com/plugins/ot/505913</guid>
            <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505913 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Always-Incorrect Control Flow Implementation vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP versions 1.106 and prior and Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP versions 1.000 and prior allows a remote attacker to cause a denial-of-service (DoS) condition on the products by continuously sending UDP packets to the products. A system reset of the product is required for recovery.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505913">https://www.tenable.com/plugins/ot/505913</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Mitsubishi Electric MELSEC iQ-F Series EtherNet/IP module and Ethernet module Improper Resource Shutdown or Release (CVE-2026-1875)]]></title>
            <link>https://www.tenable.com/plugins/ot/505912</link>
            <guid>https://www.tenable.com/plugins/ot/505912</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505912 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP versions 1.000 and prior allows a remote attacker to cause a denial-of-service (DoS) condition on the products by continuously sending UDP packets to the products. A system reset of the product is required for recovery.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505912">https://www.tenable.com/plugins/ot/505912</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero Path Traversal (CVE-2026-24717)]]></title>
            <link>https://www.tenable.com/plugins/ot/505911</link>
            <guid>https://www.tenable.com/plugins/ot/505911</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505911 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the following versions: QTS 5.2.9.3492 build 20260507 and later QuTS hero h5.2.9.3499 build 20260514 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3459 build 20260409 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505911">https://www.tenable.com/plugins/ot/505911</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero Stack-based Buffer Overflow (CVE-2025-62858)]]></title>
            <link>https://www.tenable.com/plugins/ot/505910</link>
            <guid>https://www.tenable.com/plugins/ot/505910</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505910 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to modify memory or crash processes. We have already fixed the vulnerability in the following versions: QTS 5.2.9.3410 build 20260214 and later QuTS hero h5.2.9.3410 build 20260214 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3397 build 20260206 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505910">https://www.tenable.com/plugins/ot/505910</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero Cross-site Scripting (CVE-2026-41539)]]></title>
            <link>https://www.tenable.com/plugins/ot/505909</link>
            <guid>https://www.tenable.com/plugins/ot/505909</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505909 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. The remote attackers can then exploit the vulnerability to bypass security mechanisms or read application data. We have already fixed the vulnerability in the following versions: QTS 5.2.9.3492 build 20260507 and later QuTS hero h5.2.9.3499 build 20260514 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3500 build 20260520 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505909">https://www.tenable.com/plugins/ot/505909</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Brother MFC-9970CDW Printers Cross-site Scripting (CVE-2013-2507)]]></title>
            <link>https://www.tenable.com/plugins/ot/505908</link>
            <guid>https://www.tenable.com/plugins/ot/505908</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505908 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Multiple cross-site scripting (XSS) vulnerabilities in the Brother MFC-9970CDW printer with firmware G (1.03) allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to admin/log_to_net.html or (2) kind parameter to fax/copy_settings.html, a different vulnerability than CVE-2013-2670 and CVE-2013-2671.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505908">https://www.tenable.com/plugins/ot/505908</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Brother MFC-9970CDW Printers Cross-site Scripting (CVE-2013-2670)]]></title>
            <link>https://www.tenable.com/plugins/ot/505907</link>
            <guid>https://www.tenable.com/plugins/ot/505907</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505907 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Cross-site scripting (XSS) vulnerability in the Brother MFC-9970CDW printer with firmware G (1.03) and L (1.10) allows remote attackers to inject arbitrary web script or HTML via an arbitrary parameter name (QUERY_STRING) to admin/admin_main.html, a different vulnerability than CVE-2013-2507 and CVE-2013-2671.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505907">https://www.tenable.com/plugins/ot/505907</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Brother MFC-9970CDW Printers Cross-site Scripting (CVE-2013-2671)]]></title>
            <link>https://www.tenable.com/plugins/ot/505906</link>
            <guid>https://www.tenable.com/plugins/ot/505906</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505906 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Multiple cross-site scripting (XSS) vulnerabilities in the Brother MFC-9970CDW printer with firmware L (1.10) allow remote attackers to inject arbitrary web script or HTML via the (1) id or (2) val parameter to admin/admin_main.html; (3) id, (4) val, or (5) arbitrary parameter name (QUERY_STRING) to admin/profile_settings_net.html; or (6) kind or (7) arbitrary parameter name (QUERY_STRING) to fax/general_setup.html, a different vulnerability than CVE-2013-2507 and CVE-2013-2670.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505906">https://www.tenable.com/plugins/ot/505906</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Improper Restriction of Operations within the Bounds of a Memory Buffer (CVE-2018-15520)]]></title>
            <link>https://www.tenable.com/plugins/ot/505905</link>
            <guid>https://www.tenable.com/plugins/ot/505905</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505905 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Various Lexmark devices have a Buffer Overflow vulnerability.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505905">https://www.tenable.com/plugins/ot/505905</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero OS Command Injection (CVE-2026-22893)]]></title>
            <link>https://www.tenable.com/plugins/ot/505904</link>
            <guid>https://www.tenable.com/plugins/ot/505904</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505904 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to execute arbitrary commands. We have already fixed the vulnerability in the following versions: QTS 5.2.9.3410 build 20260214 and later QuTS hero h5.2.9.3410 build 20260214 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3459 build 20260409 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505904">https://www.tenable.com/plugins/ot/505904</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero OS Command Injection (CVE-2025-66279)]]></title>
            <link>https://www.tenable.com/plugins/ot/505903</link>
            <guid>https://www.tenable.com/plugins/ot/505903</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505903 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to execute arbitrary commands. We have already fixed the vulnerability in the following versions: QTS 5.2.9.3410 build 20260214 and later QuTS hero h5.2.9.3410 build 20260214 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3397 build 20260206 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505903">https://www.tenable.com/plugins/ot/505903</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero NULL Pointer Dereference (CVE-2025-66281)]]></title>
            <link>https://www.tenable.com/plugins/ot/505902</link>
            <guid>https://www.tenable.com/plugins/ot/505902</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505902 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. The remote attackers can then exploit the vulnerability to launch a denial-of-service (DoS) attack.<br /></span><span>We have already fixed the vulnerability in the following versions: QTS 5.2.9.3410 build 20260214 and later QuTS hero h5.2.9.3410 build 20260214 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3397 build 20260206 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505902">https://www.tenable.com/plugins/ot/505902</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero Stack-based Buffer Overflow (CVE-2025-66280)]]></title>
            <link>https://www.tenable.com/plugins/ot/505901</link>
            <guid>https://www.tenable.com/plugins/ot/505901</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505901 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to compromise the security of the system. We have already fixed the vulnerability in the following versions: QTS 5.2.9.3410 build 20260214 and later QuTS hero h5.2.9.3410 build 20260214 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3397 build 20260206 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505901">https://www.tenable.com/plugins/ot/505901</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero OS Command Injection (CVE-2025-66273)]]></title>
            <link>https://www.tenable.com/plugins/ot/505900</link>
            <guid>https://www.tenable.com/plugins/ot/505900</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505900 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to execute arbitrary commands. We have already fixed the vulnerability in the following versions: QTS 5.2.9.3410 build 20260214 and later QuTS hero h5.2.9.3410 build 20260214 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3397 build 20260206 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505900">https://www.tenable.com/plugins/ot/505900</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QTS and QuTS hero NULL Pointer Dereference (CVE-2026-24716)]]></title>
            <link>https://www.tenable.com/plugins/ot/505899</link>
            <guid>https://www.tenable.com/plugins/ot/505899</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505899 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.9.3492 build 20260507 and later QuTS hero h5.2.9.3499 build 20260514 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3459 build 20260409 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505899">https://www.tenable.com/plugins/ot/505899</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Qnap QuTS hero NULL Pointer Dereference (CVE-2025-62850)]]></title>
            <link>https://www.tenable.com/plugins/ot/505898</link>
            <guid>https://www.tenable.com/plugins/ot/505898</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505898 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains an administrator account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QuTS hero h5.2.9.3410 build 20260214 and later QuTS hero h5.3.4.3500 build 20260520 and later QuTS hero h6.0.0.3459 build 20260409 and later<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505898">https://www.tenable.com/plugins/ot/505898</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Mitsubishi Electric MELSEC iQ-F Series EtherNet/IP module and Ethernet module Improper Resource Shutdown or Release (CVE-2026-1876)]]></title>
            <link>https://www.tenable.com/plugins/ot/505897</link>
            <guid>https://www.tenable.com/plugins/ot/505897</guid>
            <pubDate>Fri, 31 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505897 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP all versions allows a remote attacker to cause a denial- of-service (DoS) condition on the products by continuously sending UDP packets to the products. A system reset of the product is required for recovery.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505897">https://www.tenable.com/plugins/ot/505897</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[B&R Automation X20EDS410 Multiple Releases of Same Resource or Handle (CVE-2026-43494)]]></title>
            <link>https://www.tenable.com/plugins/ot/505896</link>
            <guid>https://www.tenable.com/plugins/ot/505896</guid>
            <pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505896 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The Linux kernel version shipped with the affected B&R product (X20EDS410) is affected by a vulnerability. A flaw in the kernel's net/rds zerocopy path that fails to reset op_nents, leading to a double free.<br /></span><span><br /></span><span>Successful local exploitation of this vulnerability could allow an authenticated attacker with low privileges to escalate privileges to root on the affected system.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>B&R recommends that users update affected products to the latest available version and apply their defense in depth for B&R products strategy. For details on this issue, please refer to the corresponding ABB PSIRT security advisory (SA26P010).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505896">https://www.tenable.com/plugins/ot/505896</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[B&R Automation X20EDS410 Out-of-bounds Write (CVE-2026-46300)]]></title>
            <link>https://www.tenable.com/plugins/ot/505895</link>
            <guid>https://www.tenable.com/plugins/ot/505895</guid>
            <pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505895 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The Linux kernel version shipped with the affected B&R product (X20EDS410) is affected by a vulnerability. A flaw in the kernel's skb_try_coalesce() that loses the shared-frag marker during coalescing.<br /></span><span><br /></span><span>Successful local exploitation of this vulnerability could allow an authenticated attacker with low privileges to escalate privileges to root on the affected system.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>B&R recommends that users update affected products to the latest available version and apply their defense in depth for B&R products strategy. For details on this issue, please refer to the corresponding ABB PSIRT security advisory (SA26P010).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505895">https://www.tenable.com/plugins/ot/505895</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[B&R Automation X20EDS410 Incorrect Resource Transfer Between Spheres (CVE-2026-31431)]]></title>
            <link>https://www.tenable.com/plugins/ot/505894</link>
            <guid>https://www.tenable.com/plugins/ot/505894</guid>
            <pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505894 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The Linux kernel version shipped with the affected B&R product (X20EDS410) is affected by a vulnerability. A flaw in the kernel's crypto algif_aead in-place operation handling.<br /></span><span><br /></span><span>Successful local exploitation of this vulnerability could allow an authenticated attacker with low privileges to escalate privileges to root on the affected system.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>B&R recommends that users update affected products to the latest available version and apply their defense in depth for B&R products strategy. For details on this issue, please refer to the corresponding ABB PSIRT security advisory (SA26P010).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505894">https://www.tenable.com/plugins/ot/505894</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC Observable Discrepancy (CVE-2023-37482)]]></title>
            <link>https://www.tenable.com/plugins/ot/505893</link>
            <guid>https://www.tenable.com/plugins/ot/505893</guid>
            <pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505893 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The webserver of several SIMATIC products is affected by a user enumeration vulnerability that could allow an unauthenticated remote attacker to identify valid usernames. The login functionality of the web server in affected devices does not normalize the response times of login attempts. An unauthenticated remote attacker could exploit this side-channel information to distinguish between valid and invalid usernames.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Siemens has identified the following specific workarounds and mitigations users can apply to reduce risk:<br /></span><span><br /></span><span>- SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC S7-1500 CPU 1510SP F-1 PN (6ES7510-1SK03-0AB0), SIMATIC S7-1500 CPU 1510SP-1 PN (6ES7510-1DK03-0AB0), SIMATIC S7-1500 CPU 1511-1 PN (6ES7511-1AL03-0AB0), SIMATIC S7-1500 CPU 1511C-1 PN (6ES7511-1CL03-0AB0), SIMATIC S7-1500 CPU 1511F-1 PN (6ES7511-1FL03-0AB0), SIMATIC S7-1500 CPU 1511T-1 PN (6ES7511-1TL03-0AB0), SIMATIC S7-1500 CPU 1511TF-1 PN (6ES7511-1UL03-0AB0), SIMATIC S7-1500 CPU 1512C-1 PN (6ES7512-1CM03-0AB0), SIMATIC S7-1500 CPU 1512SP F-1 PN (6ES7512-1SM03-0AB0), SIMATIC S7-1500 CPU 1512SP-1 PN (6ES7512-1DM03-0AB0), SIMATIC S7-1500 CPU 1513-1 PN (6ES7513-1AM03-0AB0), SIMATIC S7-1500 CPU 1513F-1 PN (6ES7513-1FM03-0AB0), SIMATIC S7-1500 CPU 1513pro F-2 PN (6ES7513-2GM03-0AB0), SIMATIC S7-1500 CPU 1513pro-2 PN (6ES7513-2PM03-0AB0), SIMATIC S7-1500 CPU 1513R-1 PN (6ES7513-1RM03-0AB0), SIMATIC S7-1500 CPU 1514SP F-2 PN (6ES7514-2SN03-0AB0), SIMATIC S7-1500 CPU 1514SP-2 PN (6ES7514-2DN03-0AB0), SIMATIC S7-1500 CPU 1514SPT F-2 PN (6ES7514-2WN03-0AB0), SIMATIC S7-1500 CPU 1514SPT-2 PN (6ES7514-2VN03-0AB0), SIMATIC S7-1500 CPU 1515-2 PN (6ES7515-2AN03-0AB0), SIMATIC S7-1500 CPU 1515F-2 PN (6ES7515-2FN03-0AB0), SIMATIC S7-1500 CPU 1515R-2 PN (6ES7515-2RN03-0AB0), SIMATIC S7-1500 CPU 1515T-2 PN (6ES7515-2TN03-0AB0), SIMATIC S7-1500 CPU 1515TF-2 PN (6ES7515-2UN03-0AB0), SIMATIC S7-1500 CPU 1516-3 PN/DP (6ES7516-3AP03-0AB0), SIMATIC S7-1500 CPU 1516F-3 PN/DP (6ES7516-3FP03-0AB0), SIMATIC S7-1500 CPU 1516pro F-2 PN (6ES7516-2GP03-0AB0), SIMATIC S7-1500 CPU 1516pro-2 PN (6ES7516-2PP03-0AB0), SIMATIC S7-1500 CPU 1516T-3 PN/DP (6ES7516-3TN00-0AB0), SIMATIC S7-1500 CPU 1516TF-3 PN/DP (6ES7516-3UN00-0AB0), SIMATIC S7-1500 CPU 1517-3 PN/DP (6ES7517-3AP00-0AB0), SIMATIC S7-1500 CPU 1517F-3 PN/DP (6ES7517-3FP00-0AB0), SIMATIC S7-1500 CPU 1517F-3 PN/DP (6ES7517-3FP01-0AB0), SIMATIC S7-1500 CPU 1517H-3 PN (6ES7517-3HP00-0AB0), SIMATIC S7-1500 CPU 1517T-3 PN/DP (6ES7517-3TP00-0AB0), SIMATIC S7-1500 CPU 1517TF-3 PN/DP (6ES7517-3UP00-0AB0), SIMATIC S7-1500 CPU 1518-4 PN/DP (6ES7518-4AP00-0AB0), SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0), SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AC0), SIMATIC S7-1500 CPU 1518F-4 PN/DP (6ES7518-4FP00-0AB0), SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (6ES7518-4FX00-1AB0), SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (6ES7518-4FX00-1AC0), SIMATIC S7-1500 CPU 1518HF-4 PN (6ES7518-4JP00-0AB0), SIMATIC S7-1500 CPU 1518T-4 PN/DP (6ES7518-4TP00-0AB0), SIMATIC S7-1500 CPU 1518TF-4 PN/DP (6ES7518-4UP00-0AB0), SIMATIC S7-1500 Software Controller, SIMATIC S7-PLCSIM Advanced, SIPLUS S7-1500 CPU 1517H-3 PN (6AG1517-3HP00-4AB0), SIPLUS S7-1500 CPU 1518-4 PN/DP (6AG1518-4AP00-4AB0), SIPLUS S7-1500 CPU 1518-4 PN/DP MFP (6AG1518-4AX00-4AC0), SIPLUS S7-1500 CPU 1518F-4 PN/DP (6AG1518-4FP00-4AB0), SIPLUS S7-1500 CPU 1518HF-4 PN (6AG1518-4JP00-4AB0): Disable HTTP (Port 80/tcp) and provide web service access through HTTPS (Port 443/tcp) only; the vulnerability is considered as only exploitable via HTTP.<br /></span><span>- SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants), SIMATIC S7-1500 Software Controller:<br /></span><span>Currently no fix is available.<br /></span><span>- SIMATIC S7-1500 CPU 1510SP F-1 PN (6ES7510-1SK03-0AB0), SIMATIC S7-1500 CPU 1510SP-1 PN (6ES7510-1DK03-0AB0), SIMATIC S7-1500 CPU 1511-1 PN (6ES7511-1AL03-0AB0), SIMATIC S7-1500 CPU 1511C-1 PN (6ES7511-1CL03-0AB0), SIMATIC S7-1500 CPU 1511F-1 PN (6ES7511-1FL03-0AB0), SIMATIC S7-1500 CPU 1511T-1 PN (6ES7511-1TL03-0AB0), SIMATIC S7-1500 CPU 1511TF-1 PN (6ES7511-1UL03-0AB0), SIMATIC S7-1500 CPU 1512C-1 PN (6ES7512-1CM03-0AB0), SIMATIC S7-1500 CPU 1512SP F-1 PN (6ES7512-1SM03-0AB0), SIMATIC S7-1500 CPU 1512SP-1 PN (6ES7512-1DM03-0AB0), SIMATIC S7-1500 CPU 1513-1 PN (6ES7513-1AM03-0AB0), SIMATIC S7-1500 CPU 1513F-1 PN (6ES7513-1FM03-0AB0), SIMATIC S7-1500 CPU 1513pro F-2 PN (6ES7513-2GM03-0AB0), SIMATIC S7-1500 CPU 1513pro-2 PN (6ES7513-2PM03-0AB0), SIMATIC S7-1500 CPU 1513R-1 PN (6ES7513-1RM03-0AB0), SIMATIC S7-1500 CPU 1514SP F-2 PN (6ES7514-2SN03-0AB0), SIMATIC S7-1500 CPU 1514SP-2 PN (6ES7514-2DN03-0AB0), SIMATIC S7-1500 CPU 1514SPT F-2 PN (6ES7514-2WN03-0AB0), SIMATIC S7-1500 CPU 1514SPT-2 PN (6ES7514-2VN03-0AB0), SIMATIC S7-1500 CPU 1515-2 PN (6ES7515-2AN03-0AB0), SIMATIC S7-1500 CPU 1515F-2 PN (6ES7515-2FN03-0AB0), SIMATIC S7-1500 CPU 1515R-2 PN (6ES7515-2RN03-0AB0), SIMATIC S7-1500 CPU 1515T-2 PN (6ES7515-2TN03-0AB0), SIMATIC S7-1500 CPU 1515TF-2 PN (6ES7515-2UN03-0AB0), SIMATIC S7-1500 CPU 1516-3 PN/DP (6ES7516-3AP03-0AB0), SIMATIC S7-1500 CPU 1516F-3 PN/DP (6ES7516-3FP03-0AB0), SIMATIC S7-1500 CPU 1516pro F-2 PN (6ES7516-2GP03-0AB0), SIMATIC S7-1500 CPU 1516pro-2 PN (6ES7516-2PP03-0AB0), SIMATIC S7-1500 CPU 1516T-3 PN/DP (6ES7516-3TN00-0AB0), SIMATIC S7-1500 CPU 1516TF-3 PN/DP (6ES7516-3UN00-0AB0), SIMATIC S7-1500 CPU 1517-3 PN/DP (6ES7517-3AP00-0AB0), SIMATIC S7-1500 CPU 1517F-3 PN/DP (6ES7517-3FP00-0AB0), SIMATIC S7-1500 CPU 1517F-3 PN/DP (6ES7517-3FP01-0AB0), SIMATIC S7-1500 CPU 1517H-3 PN (6ES7517-3HP00-0AB0), SIMATIC S7-1500 CPU 1517T-3 PN/DP (6ES7517-3TP00-0AB0), SIMATIC S7-1500 CPU 1517TF-3 PN/DP (6ES7517-3UP00-0AB0), SIMATIC S7-1500 CPU 1518-4 PN/DP (6ES7518-4AP00-0AB0), SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AB0), SIMATIC S7-1500 CPU 1518-4 PN/DP MFP (6ES7518-4AX00-1AC0), SIMATIC S7-1500 CPU 1518F-4 PN/DP (6ES7518-4FP00-0AB0), SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (6ES7518-4FX00-1AB0), SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP (6ES7518-4FX00-1AC0), SIMATIC S7-1500 CPU 1518HF-4 PN (6ES7518-4JP00-0AB0), SIMATIC S7-1500 CPU 1518T-4 PN/DP (6ES7518-4TP00-0AB0), SIMATIC S7-1500 CPU 1518TF-4 PN/DP (6ES7518-4UP00-0AB0), SIPLUS S7-1500 CPU 1517H-3 PN (6AG1517-3HP00-4AB0), SIPLUS S7-1500 CPU 1518-4 PN/DP (6AG1518-4AP00-4AB0), SIPLUS S7-1500 CPU 1518-4 PN/DP MFP (6AG1518-4AX00-4AC0), SIPLUS S7-1500 CPU 1518F-4 PN/DP (6AG1518-4FP00-4AB0), SIPLUS S7-1500 CPU 1518HF-4 PN (6AG1518-4JP00-4AB0): Update to V3.1.2 or a later version.<br /></span><span>- SIMATIC Drive Controller CPU 1504D TF (6ES7615-4DF10-0AB0), SIMATIC Drive Controller CPU 1507D TF (6ES7615-7DF10-0AB0): Update to V3.1.2 or later version.<br /></span><span>- SIPLUS S7-1200 CPU 1212 AC/DC/RLY (6AG1212-1BE40-2XB0), SIPLUS S7-1200 CPU 1212 AC/DC/RLY (6AG1212-1BE40-4XB0), SIPLUS S7-1200 CPU 1212 DC/DC/RLY (6AG1212-1HE40-2XB0), SIPLUS S7-1200 CPU 1212 DC/DC/RLY (6AG1212-1HE40-4XB0), SIPLUS S7-1200 CPU 1212C DC/DC/DC (6AG1212-1AE40-2XB0), SIPLUS S7-1200 CPU 1212C DC/DC/DC (6AG1212-1AE40-4XB0), SIPLUS S7-1200 CPU 1212C DC/DC/DC RAIL (6AG2212-1AE40-1XB0), SIPLUS S7-1200 CPU 1214 AC/DC/RLY (6AG1214-1BG40-2XB0), SIPLUS S7-1200 CPU 1214 AC/DC/RLY (6AG1214-1BG40-4XB0), SIPLUS S7-1200 CPU 1214 AC/DC/RLY (6AG1214-1BG40-5XB0), SIPLUS S7-1200 CPU 1214 DC/DC/DC (6AG1214-1AG40-2XB0), SIPLUS S7-1200 CPU 1214 DC/DC/DC (6AG1214-1AG40-4XB0), SIPLUS S7-1200 CPU 1214 DC/DC/DC (6AG1214-1AG40-5XB0), SIPLUS S7-1200 CPU 1214 DC/DC/RLY (6AG1214-1HG40-2XB0), SIPLUS S7-1200 CPU 1214 DC/DC/RLY (6AG1214-1HG40-4XB0), SIPLUS S7-1200 CPU 1214 DC/DC/RLY (6AG1214-1HG40-5XB0), SIPLUS S7-1200 CPU 1214C DC/DC/DC RAIL (6AG2214-1AG40-1XB0), SIPLUS S7-1200 CPU 1214FC DC/DC/DC (6AG1214-1AF40-5XB0), SIPLUS S7-1200 CPU 1214FC DC/DC/RLY (6AG1214-1HF40-5XB0), SIPLUS S7-1200 CPU 1215 AC/DC/RLY (6AG1215-1BG40-2XB0), SIPLUS S7-1200 CPU 1215 AC/DC/RLY (6AG1215-1BG40-4XB0), SIPLUS S7-1200 CPU 1215 AC/DC/RLY (6AG1215-1BG40-5XB0), SIPLUS S7-1200 CPU 1215 DC/DC/DC (6AG1215-1AG40-2XB0), SIPLUS S7-1200 CPU 1215 DC/DC/DC (6AG1215-1AG40-4XB0), SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-2XB0), SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-4XB0), SIPLUS S7-1200 CPU 1215 DC/DC/RLY (6AG1215-1HG40-5XB0), SIPLUS S7-1200 CPU 1215C DC/DC/DC (6AG1215-1AG40-5XB0), SIPLUS S7-1200 CPU 1215FC DC/DC/DC (6AG1215-1AF40-5XB0): Update to V4.7 or a later version.<br /></span><span>- SIMATIC S7-1200 CPU 1211C AC/DC/Rly (6ES7211-1BE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/DC (6ES7211-1AE40-0XB0), SIMATIC S7-1200 CPU 1211C DC/DC/Rly (6ES7211-1HE40-0XB0), SIMATIC S7-1200 CPU 1212C AC/DC/Rly (6ES7212-1BE40-0XB0), SIMATIC S7-1200 CPU 1212C DC/DC/DC (6ES7212-1AE40-0XB0), SIMATIC S7-1200 CPU 1212C DC/DC/Rly (6ES7212-1HE40-0XB0), SIMATIC S7-1200 CPU 1212FC DC/DC/DC (6ES7212-1AF40-0XB0), SIMATIC S7-1200 CPU 1212FC DC/DC/Rly (6ES7212-1HF40-0XB0), SIMATIC S7-1200 CPU 1214C AC/DC/Rly (6ES7214-1BG40-0XB0), SIMATIC S7-1200 CPU 1214C DC/DC/DC (6ES7214-1AG40-0XB0), SIMATIC S7-1200 CPU 1214C DC/DC/Rly (6ES7214-1HG40-0XB0), SIMATIC S7-1200 CPU 1214FC DC/DC/DC (6ES7214-1AF40-0XB0), SIMATIC S7-1200 CPU 1214FC DC/DC/Rly (6ES7214-1HF40-0XB0), SIMATIC S7-1200 CPU 1215C AC/DC/Rly (6ES7215-1BG40-0XB0), SIMATIC S7-1200 CPU 1215C DC/DC/DC (6ES7215-1AG40-0XB0), SIMATIC S7-1200 CPU 1215C DC/DC/Rly (6ES7215-1HG40-0XB0), SIMATIC S7-1200 CPU 1215FC DC/DC/DC (6ES7215-1AF40-0XB0), SIMATIC S7-1200 CPU 1215FC DC/DC/Rly (6ES7215-1HF40-0XB0), SIMATIC S7-1200 CPU 1217C DC/DC/DC (6ES7217-1AG40-0XB0): Update to V4.7 or a later version.<br /></span><span>- SIMATIC S7-PLCSIM Advanced: Update to V7.0 or a later version.<br /></span><span><br /></span><span>As a general security measure, Siemens recommends protecting network access to devices with appropriate mechanisms. To operate the devices in a protected IT environment, Siemens recommends configuring the environment according to Siemens' operational guidelines for industrial security and following recommendations in the product manuals.<br /></span><span><br /></span><span>Additional information on industrial security by Siemens can be found on the Siemens industrial security webpage.<br /></span><span><br /></span><span>For more information see the associated Siemens security advisory SSA-195895 in HTML and CSAF.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505893">https://www.tenable.com/plugins/ot/505893</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[B&R Automation X20EDS410 Improper Privilege Management (CVE-2026-46333)]]></title>
            <link>https://www.tenable.com/plugins/ot/505892</link>
            <guid>https://www.tenable.com/plugins/ot/505892</guid>
            <pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505892 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The Linux kernel version shipped with the affected B&R product (X20EDS410) is affected by a vulnerability. A flaw in the kernel's ptrace get_dumpable() logic used by ptrace_may_access().<br /></span><span><br /></span><span>Successful local exploitation of this vulnerability could allow an authenticated attacker with low privileges to escalate privileges to root on the affected system.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>B&R recommends that users update affected products to the latest available version and apply their defense in depth for B&R products strategy. For details on this issue, please refer to the corresponding ABB PSIRT security advisory (SA26P010).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505892">https://www.tenable.com/plugins/ot/505892</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens Interniche IP-Stack Improper Verification of Source of a Communication Channel (CVE-2025-40820)]]></title>
            <link>https://www.tenable.com/plugins/ot/505891</link>
            <guid>https://www.tenable.com/plugins/ot/505891</guid>
            <pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505891 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Multiple Industrial products are affected by a vulnerability in the Interniche IP-Stack. The affected products do not properly enforce TCP sequence number validation in specific scenarios but accept values within a broad range. This could allow an unauthenticated remote attacker e.g. to interfere with connection setup, potentially leading to a denial of service. The attack succeeds only if an attacker can inject IP packets with spoofed addresses at precisely timed moments, and it affects only TCP-based services.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505891">https://www.tenable.com/plugins/ot/505891</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[B&R Automation X20EDS410 Write-what-where Condition (CVE-2026-43284)]]></title>
            <link>https://www.tenable.com/plugins/ot/505890</link>
            <guid>https://www.tenable.com/plugins/ot/505890</guid>
            <pubDate>Thu, 30 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505890 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The Linux kernel version shipped with the affected B&R product (X20EDS410) is affected by a vulnerability. A flaw in the kernel's xfrm ESP input path that decrypts in place over shared skb frags.<br /></span><span><br /></span><span>Successful local exploitation of this vulnerability could allow an authenticated attacker with low privileges to escalate privileges to root on the affected system.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>B&R recommends that users update affected products to the latest available version and apply their defense in depth for B&R products strategy. For details on this issue, please refer to the corresponding ABB PSIRT security advisory (SA26P010).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505890">https://www.tenable.com/plugins/ot/505890</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Rockwell Automation ControlLogix, CompactLogix, GuardLogix, and 1756-EN4TR Improper Check for Certificate Revocation (CVE-2026-9636)]]></title>
            <link>https://www.tenable.com/plugins/ot/505889</link>
            <guid>https://www.tenable.com/plugins/ot/505889</guid>
            <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505889 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The affected products fail to properly reject certificates signed by an intermediate certificate authority that has been revoked via a Certificate Revocation List (CRL). A network-based attacker who holds such a certificate can leverage it to establish a Common Industrial Protocol (CIP) Security session that should be untrusted, potentially bypassing CIP Security protections. This issue only affects users who have the CRL feature enabled and are using intermediate certificates.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Rockwell Automation recommends users update to the following corrected versions:<br /></span><span><br /></span><span>- ControlLogix 5580: Update to V38.011 or later.<br /></span><span>- CompactLogix 5380: Update to V38.011 or later.<br /></span><span>- GuardLogix 5580: Update to V38.011 or later.<br /></span><span>- Compact GuardLogix 5380: Update to V38.011 or later.<br /></span><span>- 1756-EN4TR: Update to V7.001 or later.<br /></span><span><br /></span><span>Rockwell Automation also recommends users follow their published Security Best Practices.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505889">https://www.tenable.com/plugins/ot/505889</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Rockwell Automation Micro850/870 Uncontrolled Resource Consumption (CVE-2024-7567)]]></title>
            <link>https://www.tenable.com/plugins/ot/505888</link>
            <guid>https://www.tenable.com/plugins/ot/505888</guid>
            <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505888 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A denial-of-service vulnerability exists via the CIP/Modbus port in Micro850/870. If exploited, the CIP/Modbus communication may be disrupted for a short duration.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Rockwell Automation recommends that users update to version v22.011.<br /></span><span><br /></span><span>Rockwell Automation encourages users of the affected software to apply security best practices, if possible.<br /></span><span><br /></span><span>- For information on how to mitigate security risks on industrial automation control systems, we encourage users to implement Rockwell Automation suggested security best practices to minimize the risk of the vulnerability.<br /></span><span><br /></span><span>For more information see the Rockwell Automation Security Advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505888">https://www.tenable.com/plugins/ot/505888</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Rockwell Automation ControlLogix Ethernet Modules Insecure Default Initialization of Resource (CVE-2025-7353)]]></title>
            <link>https://www.tenable.com/plugins/ot/505887</link>
            <guid>https://www.tenable.com/plugins/ot/505887</guid>
            <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505887 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The affected ControlLogix Ethernet modules ship with a web-based debugger (WDB) agent enabled by default. A remote attacker who can reach the module using a specific IP address can connect to the WDB agent and perform memory dumps, modify memory, and control the execution flow of the module.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Rockwell Automation recommends that ControlLogix Ethernet Module users update to Version 12.001 if possible. If users are unable to upgrade to Version 12.001, security best practices should be applied.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505887">https://www.tenable.com/plugins/ot/505887</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Rockwell Automation CompactLogix Exposure of Sensitive System Information to an Unauthorized Control Sphere (CVE-2026-9307)]]></title>
            <link>https://www.tenable.com/plugins/ot/505886</link>
            <guid>https://www.tenable.com/plugins/ot/505886</guid>
            <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505886 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A sensitive information disclosure security issue exists within the affected CompactLogix 5370 controllers. The controller's web server exposes CIP Connection IDs on the diagnostics webpage, which are accessible to any unauthenticated user on the network. This information can be leveraged by an attacker to construct malicious packets, leading to a denial-of-service condition.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505886">https://www.tenable.com/plugins/ot/505886</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Rockwell Automation Micro850/870 Dependency on Vulnerable Third-Party Component (CVE-2025-13823)]]></title>
            <link>https://www.tenable.com/plugins/ot/505885</link>
            <guid>https://www.tenable.com/plugins/ot/505885</guid>
            <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505885 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A security issue was found in the IPv6 stack in the Micro850 and Micro870 controllers. This issue occurs when the controllers receive multiple malformed packets, causing the controller to enter a recoverable fault (fault code 0xFE60). To recover the controller, the fault must be cleared.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Rockwell Automation recommends users of Micro850/870 (2080-L50E/2080-L70E) update to V23.012 or later.<br /></span><span><br /></span><span>For users unable to upgrade to a corrected version, Rockwell Automation advises disabling IPv6 functionality if it is not required.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505885">https://www.tenable.com/plugins/ot/505885</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Rockwell Automation CompactLogix Improper Validation of Integrity Check Value (CVE-2025-11694)]]></title>
            <link>https://www.tenable.com/plugins/ot/505884</link>
            <guid>https://www.tenable.com/plugins/ot/505884</guid>
            <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505884 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A security issue exists within the affected CompactLogix 5370 controllers due to missing validation of sequence numbers and source IP addresses in the CIP protocol. An attacker can abuse the exposed Connection IDs visible on the controller's web interface to send forged CIP packets, resulting in a minor fault and a denial-of-service condition.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505884">https://www.tenable.com/plugins/ot/505884</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Veeder-Root TLS4B Command Injection (CVE-2025-58428)]]></title>
            <link>https://www.tenable.com/plugins/ot/505883</link>
            <guid>https://www.tenable.com/plugins/ot/505883</guid>
            <pubDate>Tue, 28 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505883 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The TLS4B ATG system's SOAP-based interface is vulnerable due to its accessibility through the web services handler. This vulnerability enables remote attackers with valid credentials to execute system-level commands on the underlying Linux system. This could allow the attacker to achieve remote command execution, full shell access, and potential lateral movement within the network.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Veeder-Root recommends users upgrade the TLS4B to Version 11.A.<br /></span><span><br /></span><span>Contact Veeder-Root Technical Support at +1.800.323.1799 for additional help or questions.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505883">https://www.tenable.com/plugins/ot/505883</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Veeder-Root TLS4B Integer Overflow or Wraparound (CVE-2025-55067)]]></title>
            <link>https://www.tenable.com/plugins/ot/505882</link>
            <guid>https://www.tenable.com/plugins/ot/505882</guid>
            <pubDate>Tue, 28 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505882 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The TLS4B ATG system is vulnerable to improper handling of Unix time values that exceed the 2038 epoch rollover. When the system clock reaches January 19, 2038, it resets to December 13, 1901, causing authentication failures and disrupting core system functionalities such as login access, history visibility, and leak detection termination. This vulnerability could allow an attacker to manipulate the system time to trigger a denial of service (DoS) condition, leading to administrative lockout, operational timer failures, and corrupted log entries.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Veeder-Root is aware of the vulnerability and will provide a fix for it. Until a fix is available, users should adhere to the network security best practices provided by Veeder-Root.<br /></span><span>Additionally, users should make all efforts to protect the borders of their environment to prevent bad actors from infiltrating and causing this issue.<br /></span><span><br /></span><span>Contact Veeder-Root Technical Support at +1.800.323.1799 for additional help or questions.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505882">https://www.tenable.com/plugins/ot/505882</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2025-22015)]]></title>
            <link>https://www.tenable.com/plugins/ot/505881</link>
            <guid>https://www.tenable.com/plugins/ot/505881</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505881 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505881">https://www.tenable.com/plugins/ot/505881</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68803)]]></title>
            <link>https://www.tenable.com/plugins/ot/505880</link>
            <guid>https://www.tenable.com/plugins/ot/505880</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505880 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505880">https://www.tenable.com/plugins/ot/505880</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68742)]]></title>
            <link>https://www.tenable.com/plugins/ot/505879</link>
            <guid>https://www.tenable.com/plugins/ot/505879</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505879 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505879">https://www.tenable.com/plugins/ot/505879</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-49968)]]></title>
            <link>https://www.tenable.com/plugins/ot/505878</link>
            <guid>https://www.tenable.com/plugins/ot/505878</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505878 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505878">https://www.tenable.com/plugins/ot/505878</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-46786)]]></title>
            <link>https://www.tenable.com/plugins/ot/505877</link>
            <guid>https://www.tenable.com/plugins/ot/505877</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505877 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505877">https://www.tenable.com/plugins/ot/505877</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23095)]]></title>
            <link>https://www.tenable.com/plugins/ot/505876</link>
            <guid>https://www.tenable.com/plugins/ot/505876</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505876 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505876">https://www.tenable.com/plugins/ot/505876</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68266)]]></title>
            <link>https://www.tenable.com/plugins/ot/505875</link>
            <guid>https://www.tenable.com/plugins/ot/505875</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505875 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505875">https://www.tenable.com/plugins/ot/505875</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incomplete Cleanup (CVE-2025-22090)]]></title>
            <link>https://www.tenable.com/plugins/ot/505874</link>
            <guid>https://www.tenable.com/plugins/ot/505874</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505874 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505874">https://www.tenable.com/plugins/ot/505874</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2025-21682)]]></title>
            <link>https://www.tenable.com/plugins/ot/505873</link>
            <guid>https://www.tenable.com/plugins/ot/505873</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505873 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505873">https://www.tenable.com/plugins/ot/505873</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-37972)]]></title>
            <link>https://www.tenable.com/plugins/ot/505872</link>
            <guid>https://www.tenable.com/plugins/ot/505872</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505872 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505872">https://www.tenable.com/plugins/ot/505872</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Write-what-where Condition (CVE-2026-46300)]]></title>
            <link>https://www.tenable.com/plugins/ot/505871</link>
            <guid>https://www.tenable.com/plugins/ot/505871</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505871 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505871">https://www.tenable.com/plugins/ot/505871</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incomplete Cleanup (CVE-2026-43027)]]></title>
            <link>https://www.tenable.com/plugins/ot/505870</link>
            <guid>https://www.tenable.com/plugins/ot/505870</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505870 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505870">https://www.tenable.com/plugins/ot/505870</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-21645)]]></title>
            <link>https://www.tenable.com/plugins/ot/505869</link>
            <guid>https://www.tenable.com/plugins/ot/505869</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505869 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505869">https://www.tenable.com/plugins/ot/505869</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38736)]]></title>
            <link>https://www.tenable.com/plugins/ot/505868</link>
            <guid>https://www.tenable.com/plugins/ot/505868</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505868 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>net: usb: asix_devices: Fix PHY address mask in MDIO bus initialization    Syzbot reported shift-out-of-bounds exception on MDIO bus initialization.    The PHY address should be masked to 5 bits (0-31). Without this  mask, invalid PHY addresses could be used, potentially causing issues  with MDIO bus operations.    Fix this by masking the PHY address with 0x1f (31 decimal) to ensure  it stays within the valid range.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505868">https://www.tenable.com/plugins/ot/505868</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition (CVE-2025-21938)]]></title>
            <link>https://www.tenable.com/plugins/ot/505867</link>
            <guid>https://www.tenable.com/plugins/ot/505867</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505867 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505867">https://www.tenable.com/plugins/ot/505867</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Insufficient Entropy (CVE-2026-41080)]]></title>
            <link>https://www.tenable.com/plugins/ot/505866</link>
            <guid>https://www.tenable.com/plugins/ot/505866</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505866 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505866">https://www.tenable.com/plugins/ot/505866</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71163)]]></title>
            <link>https://www.tenable.com/plugins/ot/505865</link>
            <guid>https://www.tenable.com/plugins/ot/505865</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505865 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505865">https://www.tenable.com/plugins/ot/505865</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71114)]]></title>
            <link>https://www.tenable.com/plugins/ot/505864</link>
            <guid>https://www.tenable.com/plugins/ot/505864</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505864 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505864">https://www.tenable.com/plugins/ot/505864</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Divide By Zero (CVE-2026-31423)]]></title>
            <link>https://www.tenable.com/plugins/ot/505863</link>
            <guid>https://www.tenable.com/plugins/ot/505863</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505863 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505863">https://www.tenable.com/plugins/ot/505863</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-31396)]]></title>
            <link>https://www.tenable.com/plugins/ot/505862</link>
            <guid>https://www.tenable.com/plugins/ot/505862</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505862 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505862">https://www.tenable.com/plugins/ot/505862</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Time-of-check Time-of-use (TOCTOU) Race Condition (CVE-2026-23463)]]></title>
            <link>https://www.tenable.com/plugins/ot/505861</link>
            <guid>https://www.tenable.com/plugins/ot/505861</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505861 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505861">https://www.tenable.com/plugins/ot/505861</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71085)]]></title>
            <link>https://www.tenable.com/plugins/ot/505860</link>
            <guid>https://www.tenable.com/plugins/ot/505860</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505860 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505860">https://www.tenable.com/plugins/ot/505860</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2024-49998)]]></title>
            <link>https://www.tenable.com/plugins/ot/505859</link>
            <guid>https://www.tenable.com/plugins/ot/505859</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505859 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505859">https://www.tenable.com/plugins/ot/505859</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Access of Uninitialized Pointer (CVE-2026-23293)]]></title>
            <link>https://www.tenable.com/plugins/ot/505858</link>
            <guid>https://www.tenable.com/plugins/ot/505858</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505858 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505858">https://www.tenable.com/plugins/ot/505858</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23100)]]></title>
            <link>https://www.tenable.com/plugins/ot/505857</link>
            <guid>https://www.tenable.com/plugins/ot/505857</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505857 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505857">https://www.tenable.com/plugins/ot/505857</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Infinite Loop (CVE-2024-56703)]]></title>
            <link>https://www.tenable.com/plugins/ot/505856</link>
            <guid>https://www.tenable.com/plugins/ot/505856</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505856 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505856">https://www.tenable.com/plugins/ot/505856</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31649)]]></title>
            <link>https://www.tenable.com/plugins/ot/505855</link>
            <guid>https://www.tenable.com/plugins/ot/505855</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505855 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505855">https://www.tenable.com/plugins/ot/505855</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Handling of Missing Special Element (CVE-2025-68206)]]></title>
            <link>https://www.tenable.com/plugins/ot/505854</link>
            <guid>https://www.tenable.com/plugins/ot/505854</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505854 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505854">https://www.tenable.com/plugins/ot/505854</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31565)]]></title>
            <link>https://www.tenable.com/plugins/ot/505853</link>
            <guid>https://www.tenable.com/plugins/ot/505853</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505853 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505853">https://www.tenable.com/plugins/ot/505853</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Exposure of Sensitive Information Due to Incompatible Policies (CVE-2025-39955)]]></title>
            <link>https://www.tenable.com/plugins/ot/505852</link>
            <guid>https://www.tenable.com/plugins/ot/505852</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505852 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505852">https://www.tenable.com/plugins/ot/505852</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Read (CVE-2025-22055)]]></title>
            <link>https://www.tenable.com/plugins/ot/505851</link>
            <guid>https://www.tenable.com/plugins/ot/505851</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505851 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505851">https://www.tenable.com/plugins/ot/505851</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Access of Uninitialized Pointer (CVE-2026-23475)]]></title>
            <link>https://www.tenable.com/plugins/ot/505850</link>
            <guid>https://www.tenable.com/plugins/ot/505850</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505850 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505850">https://www.tenable.com/plugins/ot/505850</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2025-23136)]]></title>
            <link>https://www.tenable.com/plugins/ot/505849</link>
            <guid>https://www.tenable.com/plugins/ot/505849</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505849 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505849">https://www.tenable.com/plugins/ot/505849</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-21731)]]></title>
            <link>https://www.tenable.com/plugins/ot/505848</link>
            <guid>https://www.tenable.com/plugins/ot/505848</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505848 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505848">https://www.tenable.com/plugins/ot/505848</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31674)]]></title>
            <link>https://www.tenable.com/plugins/ot/505847</link>
            <guid>https://www.tenable.com/plugins/ot/505847</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505847 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505847">https://www.tenable.com/plugins/ot/505847</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Update of Reference Count (CVE-2026-23458)]]></title>
            <link>https://www.tenable.com/plugins/ot/505846</link>
            <guid>https://www.tenable.com/plugins/ot/505846</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505846 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505846">https://www.tenable.com/plugins/ot/505846</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-22083)]]></title>
            <link>https://www.tenable.com/plugins/ot/505845</link>
            <guid>https://www.tenable.com/plugins/ot/505845</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505845 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505845">https://www.tenable.com/plugins/ot/505845</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31768)]]></title>
            <link>https://www.tenable.com/plugins/ot/505844</link>
            <guid>https://www.tenable.com/plugins/ot/505844</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505844 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505844">https://www.tenable.com/plugins/ot/505844</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Type Confusion (CVE-2026-43038)]]></title>
            <link>https://www.tenable.com/plugins/ot/505843</link>
            <guid>https://www.tenable.com/plugins/ot/505843</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505843 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505843">https://www.tenable.com/plugins/ot/505843</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Neutralization of Null Byte or NUL Character (CVE-2025-61985)]]></title>
            <link>https://www.tenable.com/plugins/ot/505842</link>
            <guid>https://www.tenable.com/plugins/ot/505842</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505842 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505842">https://www.tenable.com/plugins/ot/505842</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31664)]]></title>
            <link>https://www.tenable.com/plugins/ot/505841</link>
            <guid>https://www.tenable.com/plugins/ot/505841</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505841 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505841">https://www.tenable.com/plugins/ot/505841</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-21718)]]></title>
            <link>https://www.tenable.com/plugins/ot/505840</link>
            <guid>https://www.tenable.com/plugins/ot/505840</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505840 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505840">https://www.tenable.com/plugins/ot/505840</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71123)]]></title>
            <link>https://www.tenable.com/plugins/ot/505839</link>
            <guid>https://www.tenable.com/plugins/ot/505839</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505839 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505839">https://www.tenable.com/plugins/ot/505839</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-37917)]]></title>
            <link>https://www.tenable.com/plugins/ot/505838</link>
            <guid>https://www.tenable.com/plugins/ot/505838</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505838 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505838">https://www.tenable.com/plugins/ot/505838</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39782)]]></title>
            <link>https://www.tenable.com/plugins/ot/505837</link>
            <guid>https://www.tenable.com/plugins/ot/505837</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505837 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>jbd2: prevent softlockup in jbd2_log_do_checkpoint()    Both jbd2_log_do_checkpoint() and jbd2_journal_shrink_checkpoint_list() periodically release j_list_lock after processing a batch of buffers to  avoid long hold times on the j_list_lock. However, since both functions  contend for j_list_lock, the combined time spent waiting and processing  can be significant.<br /></span><span>jbd2_journal_shrink_checkpoint_list() explicitly calls cond_resched() when  need_resched() is true to avoid softlockups during prolonged operations.  But jbd2_log_do_checkpoint() only exits its loop when need_resched() is  true, relying on potentially sleeping functions like __flush_batch() or  wait_on_buffer() to trigger rescheduling. If those functions do not sleep,  the kernel may hit a softlockup.<br /></span><span>watchdog: BUG: soft lockup - CPU#3 stuck for 156s! [kworker/u129:2:373]  CPU: 3 PID: 373 Comm: kworker/u129:2 Kdump:<br /></span><span>loaded Not tainted 6.6.0+ #10  Hardware name: Huawei TaiShan 2280 /BC11SPCD, BIOS 1.27 06/13/2017  Workqueue: writeback wb_workfn (flush-7:2)  pstate: 20000005 (nzCv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--)  pc : native_queued_spin_lock_slowpath+0x358/0x418  lr :<br /></span><span>jbd2_log_do_checkpoint+0x31c/0x438 [jbd2]  Call trace:<br /></span><span>native_queued_spin_lock_slowpath+0x358/0x418 jbd2_log_do_checkpoint+0x31c/0x438 [jbd2]<br /></span><span>__jbd2_log_wait_for_space+0xfc/0x2f8 [jbd2] add_transaction_credits+0x3bc/0x418 [jbd2] start_this_handle+0xf8/0x560 [jbd2]   jbd2__journal_start+0x118/0x228 [jbd2]   __ext4_journal_start_sb+0x110/0x188 [ext4] ext4_do_writepages+0x3dc/0x740 [ext4]   ext4_writepages+0xa4/0x190 [ext4]   do_writepages+0x94/0x228<br /></span><span>__writeback_single_inode+0x48/0x318   writeback_sb_inodes+0x204/0x590<br /></span><span>__writeback_inodes_wb+0x54/0xf8   wb_writeback+0x2cc/0x3d8 wb_do_writeback+0x2e0/0x2f8   wb_workfn+0x80/0x2a8 process_one_work+0x178/0x3e8   worker_thread+0x234/0x3b8 kthread+0xf0/0x108   ret_from_fork+0x10/0x20    So explicitly call cond_resched() in jbd2_log_do_checkpoint() to avoid  softlockup.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505837">https://www.tenable.com/plugins/ot/505837</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Validation of Specified Type of Input (CVE-2026-31495)]]></title>
            <link>https://www.tenable.com/plugins/ot/505836</link>
            <guid>https://www.tenable.com/plugins/ot/505836</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505836 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505836">https://www.tenable.com/plugins/ot/505836</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Write (CVE-2025-21919)]]></title>
            <link>https://www.tenable.com/plugins/ot/505835</link>
            <guid>https://www.tenable.com/plugins/ot/505835</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505835 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505835">https://www.tenable.com/plugins/ot/505835</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23083)]]></title>
            <link>https://www.tenable.com/plugins/ot/505834</link>
            <guid>https://www.tenable.com/plugins/ot/505834</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505834 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505834">https://www.tenable.com/plugins/ot/505834</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Infinite Loop (CVE-2025-71161)]]></title>
            <link>https://www.tenable.com/plugins/ot/505833</link>
            <guid>https://www.tenable.com/plugins/ot/505833</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505833 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505833">https://www.tenable.com/plugins/ot/505833</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Uninitialized Resource (CVE-2025-21959)]]></title>
            <link>https://www.tenable.com/plugins/ot/505832</link>
            <guid>https://www.tenable.com/plugins/ot/505832</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505832 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505832">https://www.tenable.com/plugins/ot/505832</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31508)]]></title>
            <link>https://www.tenable.com/plugins/ot/505831</link>
            <guid>https://www.tenable.com/plugins/ot/505831</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505831 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505831">https://www.tenable.com/plugins/ot/505831</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Integer Overflow or Wraparound (CVE-2024-49994)]]></title>
            <link>https://www.tenable.com/plugins/ot/505830</link>
            <guid>https://www.tenable.com/plugins/ot/505830</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505830 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505830">https://www.tenable.com/plugins/ot/505830</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31670)]]></title>
            <link>https://www.tenable.com/plugins/ot/505829</link>
            <guid>https://www.tenable.com/plugins/ot/505829</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505829 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505829">https://www.tenable.com/plugins/ot/505829</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-23392)]]></title>
            <link>https://www.tenable.com/plugins/ot/505828</link>
            <guid>https://www.tenable.com/plugins/ot/505828</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505828 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505828">https://www.tenable.com/plugins/ot/505828</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Misinterpretation of Input (CVE-2026-43024)]]></title>
            <link>https://www.tenable.com/plugins/ot/505827</link>
            <guid>https://www.tenable.com/plugins/ot/505827</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505827 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505827">https://www.tenable.com/plugins/ot/505827</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38201)]]></title>
            <link>https://www.tenable.com/plugins/ot/505826</link>
            <guid>https://www.tenable.com/plugins/ot/505826</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505826 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505826">https://www.tenable.com/plugins/ot/505826</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-56719)]]></title>
            <link>https://www.tenable.com/plugins/ot/505825</link>
            <guid>https://www.tenable.com/plugins/ot/505825</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505825 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505825">https://www.tenable.com/plugins/ot/505825</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-31546)]]></title>
            <link>https://www.tenable.com/plugins/ot/505824</link>
            <guid>https://www.tenable.com/plugins/ot/505824</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505824 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505824">https://www.tenable.com/plugins/ot/505824</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Externally-Controlled Format String (CVE-2025-68816)]]></title>
            <link>https://www.tenable.com/plugins/ot/505823</link>
            <guid>https://www.tenable.com/plugins/ot/505823</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505823 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505823">https://www.tenable.com/plugins/ot/505823</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23087)]]></title>
            <link>https://www.tenable.com/plugins/ot/505822</link>
            <guid>https://www.tenable.com/plugins/ot/505822</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505822 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505822">https://www.tenable.com/plugins/ot/505822</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68773)]]></title>
            <link>https://www.tenable.com/plugins/ot/505821</link>
            <guid>https://www.tenable.com/plugins/ot/505821</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505821 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505821">https://www.tenable.com/plugins/ot/505821</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-40078)]]></title>
            <link>https://www.tenable.com/plugins/ot/505820</link>
            <guid>https://www.tenable.com/plugins/ot/505820</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505820 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505820">https://www.tenable.com/plugins/ot/505820</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2025-68349)]]></title>
            <link>https://www.tenable.com/plugins/ot/505819</link>
            <guid>https://www.tenable.com/plugins/ot/505819</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505819 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505819">https://www.tenable.com/plugins/ot/505819</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-32778)]]></title>
            <link>https://www.tenable.com/plugins/ot/505818</link>
            <guid>https://www.tenable.com/plugins/ot/505818</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505818 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505818">https://www.tenable.com/plugins/ot/505818</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68371)]]></title>
            <link>https://www.tenable.com/plugins/ot/505817</link>
            <guid>https://www.tenable.com/plugins/ot/505817</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505817 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505817">https://www.tenable.com/plugins/ot/505817</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31418)]]></title>
            <link>https://www.tenable.com/plugins/ot/505816</link>
            <guid>https://www.tenable.com/plugins/ot/505816</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505816 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505816">https://www.tenable.com/plugins/ot/505816</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-32776)]]></title>
            <link>https://www.tenable.com/plugins/ot/505815</link>
            <guid>https://www.tenable.com/plugins/ot/505815</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505815 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505815">https://www.tenable.com/plugins/ot/505815</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Uninitialized Variable (CVE-2026-23003)]]></title>
            <link>https://www.tenable.com/plugins/ot/505814</link>
            <guid>https://www.tenable.com/plugins/ot/505814</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505814 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505814">https://www.tenable.com/plugins/ot/505814</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incorrect Calculation of Buffer Size (CVE-2026-23243)]]></title>
            <link>https://www.tenable.com/plugins/ot/505813</link>
            <guid>https://www.tenable.com/plugins/ot/505813</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505813 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505813">https://www.tenable.com/plugins/ot/505813</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71221)]]></title>
            <link>https://www.tenable.com/plugins/ot/505812</link>
            <guid>https://www.tenable.com/plugins/ot/505812</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505812 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505812">https://www.tenable.com/plugins/ot/505812</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31671)]]></title>
            <link>https://www.tenable.com/plugins/ot/505811</link>
            <guid>https://www.tenable.com/plugins/ot/505811</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505811 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505811">https://www.tenable.com/plugins/ot/505811</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-40070)]]></title>
            <link>https://www.tenable.com/plugins/ot/505810</link>
            <guid>https://www.tenable.com/plugins/ot/505810</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505810 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505810">https://www.tenable.com/plugins/ot/505810</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39964)]]></title>
            <link>https://www.tenable.com/plugins/ot/505809</link>
            <guid>https://www.tenable.com/plugins/ot/505809</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505809 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505809">https://www.tenable.com/plugins/ot/505809</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Integer Overflow or Wraparound (CVE-2026-31415)]]></title>
            <link>https://www.tenable.com/plugins/ot/505808</link>
            <guid>https://www.tenable.com/plugins/ot/505808</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505808 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505808">https://www.tenable.com/plugins/ot/505808</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incorrect Privilege Assignment (CVE-2025-68764)]]></title>
            <link>https://www.tenable.com/plugins/ot/505807</link>
            <guid>https://www.tenable.com/plugins/ot/505807</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505807 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505807">https://www.tenable.com/plugins/ot/505807</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition (CVE-2024-57917)]]></title>
            <link>https://www.tenable.com/plugins/ot/505806</link>
            <guid>https://www.tenable.com/plugins/ot/505806</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505806 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505806">https://www.tenable.com/plugins/ot/505806</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38591)]]></title>
            <link>https://www.tenable.com/plugins/ot/505805</link>
            <guid>https://www.tenable.com/plugins/ot/505805</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505805 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505805">https://www.tenable.com/plugins/ot/505805</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68798)]]></title>
            <link>https://www.tenable.com/plugins/ot/505804</link>
            <guid>https://www.tenable.com/plugins/ot/505804</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505804 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505804">https://www.tenable.com/plugins/ot/505804</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Uninitialized Resource (CVE-2026-3497)]]></title>
            <link>https://www.tenable.com/plugins/ot/505803</link>
            <guid>https://www.tenable.com/plugins/ot/505803</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505803 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505803">https://www.tenable.com/plugins/ot/505803</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31669)]]></title>
            <link>https://www.tenable.com/plugins/ot/505802</link>
            <guid>https://www.tenable.com/plugins/ot/505802</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505802 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505802">https://www.tenable.com/plugins/ot/505802</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Handling of Length Parameter Inconsistency (CVE-2026-23397)]]></title>
            <link>https://www.tenable.com/plugins/ot/505801</link>
            <guid>https://www.tenable.com/plugins/ot/505801</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505801 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505801">https://www.tenable.com/plugins/ot/505801</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Time-of-check Time-of-use (TOCTOU) Race Condition (CVE-2026-23449)]]></title>
            <link>https://www.tenable.com/plugins/ot/505800</link>
            <guid>https://www.tenable.com/plugins/ot/505800</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505800 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505800">https://www.tenable.com/plugins/ot/505800</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38704)]]></title>
            <link>https://www.tenable.com/plugins/ot/505799</link>
            <guid>https://www.tenable.com/plugins/ot/505799</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505799 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505799">https://www.tenable.com/plugins/ot/505799</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Update of Reference Count (CVE-2026-31391)]]></title>
            <link>https://www.tenable.com/plugins/ot/505798</link>
            <guid>https://www.tenable.com/plugins/ot/505798</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505798 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505798">https://www.tenable.com/plugins/ot/505798</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31634)]]></title>
            <link>https://www.tenable.com/plugins/ot/505797</link>
            <guid>https://www.tenable.com/plugins/ot/505797</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505797 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505797">https://www.tenable.com/plugins/ot/505797</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition (CVE-2024-36903)]]></title>
            <link>https://www.tenable.com/plugins/ot/505796</link>
            <guid>https://www.tenable.com/plugins/ot/505796</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505796 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505796">https://www.tenable.com/plugins/ot/505796</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-40080)]]></title>
            <link>https://www.tenable.com/plugins/ot/505795</link>
            <guid>https://www.tenable.com/plugins/ot/505795</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505795 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505795">https://www.tenable.com/plugins/ot/505795</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Uninitialized Resource (CVE-2026-23274)]]></title>
            <link>https://www.tenable.com/plugins/ot/505794</link>
            <guid>https://www.tenable.com/plugins/ot/505794</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505794 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505794">https://www.tenable.com/plugins/ot/505794</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-40149)]]></title>
            <link>https://www.tenable.com/plugins/ot/505793</link>
            <guid>https://www.tenable.com/plugins/ot/505793</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505793 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505793">https://www.tenable.com/plugins/ot/505793</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2025-40135)]]></title>
            <link>https://www.tenable.com/plugins/ot/505792</link>
            <guid>https://www.tenable.com/plugins/ot/505792</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505792 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505792">https://www.tenable.com/plugins/ot/505792</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Release of Resource after Effective Lifetime (CVE-2026-22994)]]></title>
            <link>https://www.tenable.com/plugins/ot/505791</link>
            <guid>https://www.tenable.com/plugins/ot/505791</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505791 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505791">https://www.tenable.com/plugins/ot/505791</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Initialization of Resource (CVE-2025-71064)]]></title>
            <link>https://www.tenable.com/plugins/ot/505790</link>
            <guid>https://www.tenable.com/plugins/ot/505790</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505790 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505790">https://www.tenable.com/plugins/ot/505790</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71079)]]></title>
            <link>https://www.tenable.com/plugins/ot/505789</link>
            <guid>https://www.tenable.com/plugins/ot/505789</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505789 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505789">https://www.tenable.com/plugins/ot/505789</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31446)]]></title>
            <link>https://www.tenable.com/plugins/ot/505788</link>
            <guid>https://www.tenable.com/plugins/ot/505788</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505788 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505788">https://www.tenable.com/plugins/ot/505788</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Write (CVE-2026-31402)]]></title>
            <link>https://www.tenable.com/plugins/ot/505787</link>
            <guid>https://www.tenable.com/plugins/ot/505787</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505787 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505787">https://www.tenable.com/plugins/ot/505787</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23005)]]></title>
            <link>https://www.tenable.com/plugins/ot/505786</link>
            <guid>https://www.tenable.com/plugins/ot/505786</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505786 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505786">https://www.tenable.com/plugins/ot/505786</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71162)]]></title>
            <link>https://www.tenable.com/plugins/ot/505785</link>
            <guid>https://www.tenable.com/plugins/ot/505785</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505785 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505785">https://www.tenable.com/plugins/ot/505785</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39980)]]></title>
            <link>https://www.tenable.com/plugins/ot/505784</link>
            <guid>https://www.tenable.com/plugins/ot/505784</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505784 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505784">https://www.tenable.com/plugins/ot/505784</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-37964)]]></title>
            <link>https://www.tenable.com/plugins/ot/505783</link>
            <guid>https://www.tenable.com/plugins/ot/505783</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505783 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505783">https://www.tenable.com/plugins/ot/505783</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23245)]]></title>
            <link>https://www.tenable.com/plugins/ot/505782</link>
            <guid>https://www.tenable.com/plugins/ot/505782</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505782 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505782">https://www.tenable.com/plugins/ot/505782</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-21999)]]></title>
            <link>https://www.tenable.com/plugins/ot/505781</link>
            <guid>https://www.tenable.com/plugins/ot/505781</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505781 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505781">https://www.tenable.com/plugins/ot/505781</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31450)]]></title>
            <link>https://www.tenable.com/plugins/ot/505780</link>
            <guid>https://www.tenable.com/plugins/ot/505780</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505780 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505780">https://www.tenable.com/plugins/ot/505780</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Release of Memory after Effective Lifetime (CVE-2025-22005)]]></title>
            <link>https://www.tenable.com/plugins/ot/505779</link>
            <guid>https://www.tenable.com/plugins/ot/505779</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505779 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505779">https://www.tenable.com/plugins/ot/505779</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39827)]]></title>
            <link>https://www.tenable.com/plugins/ot/505778</link>
            <guid>https://www.tenable.com/plugins/ot/505778</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505778 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>net: rose: include node references in rose_neigh refcount    Current implementation maintains two separate reference counting  mechanisms:<br /></span><span>the 'count' field in struct rose_neigh tracks references from rose_node structures, while the 'use' field (now refcount_t) tracks references from rose_sock.    This patch merges these two reference counting systems using 'use' field  for proper reference management.<br /></span><span>Specifically, this patch adds incrementing  and decrementing of rose_neigh->use when rose_neigh->count is incremented  or decremented.<br /></span><span>This patch also modifies rose_rt_free(), rose_rt_device_down() and rose_clear_route() to properly release references to rose_neigh objects  before freeing a rose_node through rose_remove_node().<br /></span><span>These changes ensure rose_neigh structures are properly freed only when  all references, including those from rose_node structures, are released.  As a result, this resolves a slab-use-after-free issue reported by Syzbot.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505778">https://www.tenable.com/plugins/ot/505778</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71265)]]></title>
            <link>https://www.tenable.com/plugins/ot/505777</link>
            <guid>https://www.tenable.com/plugins/ot/505777</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505777 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505777">https://www.tenable.com/plugins/ot/505777</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition within a Thread (CVE-2025-71088)]]></title>
            <link>https://www.tenable.com/plugins/ot/505776</link>
            <guid>https://www.tenable.com/plugins/ot/505776</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505776 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505776">https://www.tenable.com/plugins/ot/505776</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Resource Leak (CVE-2025-40300)]]></title>
            <link>https://www.tenable.com/plugins/ot/505775</link>
            <guid>https://www.tenable.com/plugins/ot/505775</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505775 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>x86/vmscape: Add conditional IBPB mitigation    VMSCAPE is a vulnerability that exploits insufficient branch predictor  isolation between a guest and a userspace hypervisor (like QEMU). Existing mitigations already protect kernel/KVM from a malicious guest.<br /></span><span>Userspace  can additionally be protected by flushing the branch predictors after a  VMexit.    Since it is the userspace that consumes the poisoned branch predictors,  conditionally issue an IBPB after a VMexit and before returning to  userspace. Workloads that frequently switch between hypervisor and  userspace will incur the most overhead from the new IBPB.    This new IBPB is not integrated with the existing IBPB sites. For  instance, a task can use the existing speculation control prctl() to  get an IBPB at context switch time.<br /></span><span>With this implementation, the  IBPB is doubled up: one at context switch and another before running  userspace.    The intent is to integrate and optimize these cases post-embargo.    [ dhansen:<br /></span><span>elaborate on suboptimal IBPB solution ]<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505775">https://www.tenable.com/plugins/ot/505775</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Access of Uninitialized Pointer (CVE-2026-23381)]]></title>
            <link>https://www.tenable.com/plugins/ot/505774</link>
            <guid>https://www.tenable.com/plugins/ot/505774</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505774 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505774">https://www.tenable.com/plugins/ot/505774</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2026-23270)]]></title>
            <link>https://www.tenable.com/plugins/ot/505773</link>
            <guid>https://www.tenable.com/plugins/ot/505773</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505773 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505773">https://www.tenable.com/plugins/ot/505773</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Read (CVE-2026-4437)]]></title>
            <link>https://www.tenable.com/plugins/ot/505772</link>
            <guid>https://www.tenable.com/plugins/ot/505772</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505772 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505772">https://www.tenable.com/plugins/ot/505772</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Buffer Access with Incorrect Length Value (CVE-2026-31752)]]></title>
            <link>https://www.tenable.com/plugins/ot/505771</link>
            <guid>https://www.tenable.com/plugins/ot/505771</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505771 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505771">https://www.tenable.com/plugins/ot/505771</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-31422)]]></title>
            <link>https://www.tenable.com/plugins/ot/505770</link>
            <guid>https://www.tenable.com/plugins/ot/505770</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505770 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505770">https://www.tenable.com/plugins/ot/505770</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Trust of System Event Data (CVE-2025-68788)]]></title>
            <link>https://www.tenable.com/plugins/ot/505769</link>
            <guid>https://www.tenable.com/plugins/ot/505769</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505769 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505769">https://www.tenable.com/plugins/ot/505769</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2025-68265)]]></title>
            <link>https://www.tenable.com/plugins/ot/505768</link>
            <guid>https://www.tenable.com/plugins/ot/505768</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505768 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505768">https://www.tenable.com/plugins/ot/505768</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Resource Locking (CVE-2025-21802)]]></title>
            <link>https://www.tenable.com/plugins/ot/505767</link>
            <guid>https://www.tenable.com/plugins/ot/505767</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505767 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505767">https://www.tenable.com/plugins/ot/505767</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2024-47809)]]></title>
            <link>https://www.tenable.com/plugins/ot/505766</link>
            <guid>https://www.tenable.com/plugins/ot/505766</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505766 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505766">https://www.tenable.com/plugins/ot/505766</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Time-of-check Time-of-use (TOCTOU) Race Condition (CVE-2026-31761)]]></title>
            <link>https://www.tenable.com/plugins/ot/505765</link>
            <guid>https://www.tenable.com/plugins/ot/505765</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505765 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505765">https://www.tenable.com/plugins/ot/505765</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Write (CVE-2026-5435)]]></title>
            <link>https://www.tenable.com/plugins/ot/505764</link>
            <guid>https://www.tenable.com/plugins/ot/505764</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505764 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505764">https://www.tenable.com/plugins/ot/505764</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-58061)]]></title>
            <link>https://www.tenable.com/plugins/ot/505763</link>
            <guid>https://www.tenable.com/plugins/ot/505763</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505763 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505763">https://www.tenable.com/plugins/ot/505763</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Integer Overflow or Wraparound (CVE-2024-57973)]]></title>
            <link>https://www.tenable.com/plugins/ot/505762</link>
            <guid>https://www.tenable.com/plugins/ot/505762</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505762 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505762">https://www.tenable.com/plugins/ot/505762</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Classic Buffer Overflow (CVE-2026-23378)]]></title>
            <link>https://www.tenable.com/plugins/ot/505761</link>
            <guid>https://www.tenable.com/plugins/ot/505761</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505761 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505761">https://www.tenable.com/plugins/ot/505761</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Initialization of Resource (CVE-2026-23300)]]></title>
            <link>https://www.tenable.com/plugins/ot/505760</link>
            <guid>https://www.tenable.com/plugins/ot/505760</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505760 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505760">https://www.tenable.com/plugins/ot/505760</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2025-39978)]]></title>
            <link>https://www.tenable.com/plugins/ot/505759</link>
            <guid>https://www.tenable.com/plugins/ot/505759</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505759 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505759">https://www.tenable.com/plugins/ot/505759</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-23242)]]></title>
            <link>https://www.tenable.com/plugins/ot/505758</link>
            <guid>https://www.tenable.com/plugins/ot/505758</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505758 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505758">https://www.tenable.com/plugins/ot/505758</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-23454)]]></title>
            <link>https://www.tenable.com/plugins/ot/505757</link>
            <guid>https://www.tenable.com/plugins/ot/505757</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505757 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505757">https://www.tenable.com/plugins/ot/505757</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Uninitialized Resource (CVE-2025-21707)]]></title>
            <link>https://www.tenable.com/plugins/ot/505756</link>
            <guid>https://www.tenable.com/plugins/ot/505756</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505756 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505756">https://www.tenable.com/plugins/ot/505756</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Read (CVE-2025-37785)]]></title>
            <link>https://www.tenable.com/plugins/ot/505755</link>
            <guid>https://www.tenable.com/plugins/ot/505755</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505755 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505755">https://www.tenable.com/plugins/ot/505755</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-21705)]]></title>
            <link>https://www.tenable.com/plugins/ot/505754</link>
            <guid>https://www.tenable.com/plugins/ot/505754</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505754 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505754">https://www.tenable.com/plugins/ot/505754</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-22060)]]></title>
            <link>https://www.tenable.com/plugins/ot/505753</link>
            <guid>https://www.tenable.com/plugins/ot/505753</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505753 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505753">https://www.tenable.com/plugins/ot/505753</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-23304)]]></title>
            <link>https://www.tenable.com/plugins/ot/505752</link>
            <guid>https://www.tenable.com/plugins/ot/505752</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505752 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505752">https://www.tenable.com/plugins/ot/505752</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Time-of-check Time-of-use (TOCTOU) Race Condition (CVE-2026-23287)]]></title>
            <link>https://www.tenable.com/plugins/ot/505751</link>
            <guid>https://www.tenable.com/plugins/ot/505751</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505751 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505751">https://www.tenable.com/plugins/ot/505751</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Divide By Zero (CVE-2025-39681)]]></title>
            <link>https://www.tenable.com/plugins/ot/505750</link>
            <guid>https://www.tenable.com/plugins/ot/505750</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505750 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>x86/cpu/hygon: Add missing resctrl_cpu_detect() in bsp_init helper Since      923f3a2b48bd (x86/resctrl: Query LLC monitoring properties once during boot)    resctrl_cpu_detect() has been moved from common CPU initialization code to  the vendor-specific BSP init helper, while Hygon didn't put that call in their  code.    This triggers a division by zero fault during early booting stage on our  machines with X86_FEATURE_CQM* supported, where get_rdt_mon_resources() tries  to calculate mon_l3_config with uninitialized boot_cpu_data.x86_cache_occ_scale.    Add the missing resctrl_cpu_detect() in the Hygon BSP init helper.      [ bp: Massage commit message. ]<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505750">https://www.tenable.com/plugins/ot/505750</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31658)]]></title>
            <link>https://www.tenable.com/plugins/ot/505749</link>
            <guid>https://www.tenable.com/plugins/ot/505749</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505749 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505749">https://www.tenable.com/plugins/ot/505749</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-21867)]]></title>
            <link>https://www.tenable.com/plugins/ot/505748</link>
            <guid>https://www.tenable.com/plugins/ot/505748</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505748 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505748">https://www.tenable.com/plugins/ot/505748</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-31555)]]></title>
            <link>https://www.tenable.com/plugins/ot/505747</link>
            <guid>https://www.tenable.com/plugins/ot/505747</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505747 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505747">https://www.tenable.com/plugins/ot/505747</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition within a Thread (CVE-2026-3904)]]></title>
            <link>https://www.tenable.com/plugins/ot/505746</link>
            <guid>https://www.tenable.com/plugins/ot/505746</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505746 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505746">https://www.tenable.com/plugins/ot/505746</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Time-of-check Time-of-use (TOCTOU) Race Condition (CVE-2025-68261)]]></title>
            <link>https://www.tenable.com/plugins/ot/505745</link>
            <guid>https://www.tenable.com/plugins/ot/505745</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505745 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505745">https://www.tenable.com/plugins/ot/505745</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Initialization of Resource (CVE-2026-43040)]]></title>
            <link>https://www.tenable.com/plugins/ot/505744</link>
            <guid>https://www.tenable.com/plugins/ot/505744</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505744 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505744">https://www.tenable.com/plugins/ot/505744</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Unchecked Return Value (CVE-2025-68820)]]></title>
            <link>https://www.tenable.com/plugins/ot/505743</link>
            <guid>https://www.tenable.com/plugins/ot/505743</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505743 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505743">https://www.tenable.com/plugins/ot/505743</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition (CVE-2025-21655)]]></title>
            <link>https://www.tenable.com/plugins/ot/505742</link>
            <guid>https://www.tenable.com/plugins/ot/505742</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505742 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505742">https://www.tenable.com/plugins/ot/505742</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31496)]]></title>
            <link>https://www.tenable.com/plugins/ot/505741</link>
            <guid>https://www.tenable.com/plugins/ot/505741</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505741 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505741">https://www.tenable.com/plugins/ot/505741</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Signal Handler Race Condition (CVE-2025-71075)]]></title>
            <link>https://www.tenable.com/plugins/ot/505740</link>
            <guid>https://www.tenable.com/plugins/ot/505740</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505740 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505740">https://www.tenable.com/plugins/ot/505740</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-21887)]]></title>
            <link>https://www.tenable.com/plugins/ot/505739</link>
            <guid>https://www.tenable.com/plugins/ot/505739</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505739 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505739">https://www.tenable.com/plugins/ot/505739</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39721)]]></title>
            <link>https://www.tenable.com/plugins/ot/505738</link>
            <guid>https://www.tenable.com/plugins/ot/505738</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505738 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505738">https://www.tenable.com/plugins/ot/505738</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-21926)]]></title>
            <link>https://www.tenable.com/plugins/ot/505737</link>
            <guid>https://www.tenable.com/plugins/ot/505737</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505737 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505737">https://www.tenable.com/plugins/ot/505737</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71120)]]></title>
            <link>https://www.tenable.com/plugins/ot/505736</link>
            <guid>https://www.tenable.com/plugins/ot/505736</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505736 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505736">https://www.tenable.com/plugins/ot/505736</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Integer Overflow or Wraparound (CVE-2025-68724)]]></title>
            <link>https://www.tenable.com/plugins/ot/505735</link>
            <guid>https://www.tenable.com/plugins/ot/505735</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505735 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505735">https://www.tenable.com/plugins/ot/505735</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2025-21676)]]></title>
            <link>https://www.tenable.com/plugins/ot/505734</link>
            <guid>https://www.tenable.com/plugins/ot/505734</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505734 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505734">https://www.tenable.com/plugins/ot/505734</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2024-53170)]]></title>
            <link>https://www.tenable.com/plugins/ot/505733</link>
            <guid>https://www.tenable.com/plugins/ot/505733</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505733 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505733">https://www.tenable.com/plugins/ot/505733</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-21913)]]></title>
            <link>https://www.tenable.com/plugins/ot/505732</link>
            <guid>https://www.tenable.com/plugins/ot/505732</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505732 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505732">https://www.tenable.com/plugins/ot/505732</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-23084)]]></title>
            <link>https://www.tenable.com/plugins/ot/505731</link>
            <guid>https://www.tenable.com/plugins/ot/505731</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505731 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505731">https://www.tenable.com/plugins/ot/505731</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2026-22980)]]></title>
            <link>https://www.tenable.com/plugins/ot/505730</link>
            <guid>https://www.tenable.com/plugins/ot/505730</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505730 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505730">https://www.tenable.com/plugins/ot/505730</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-4438)]]></title>
            <link>https://www.tenable.com/plugins/ot/505729</link>
            <guid>https://www.tenable.com/plugins/ot/505729</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505729 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505729">https://www.tenable.com/plugins/ot/505729</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-37909)]]></title>
            <link>https://www.tenable.com/plugins/ot/505728</link>
            <guid>https://www.tenable.com/plugins/ot/505728</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505728 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505728">https://www.tenable.com/plugins/ot/505728</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Privilege Management (CVE-2026-46333)]]></title>
            <link>https://www.tenable.com/plugins/ot/505727</link>
            <guid>https://www.tenable.com/plugins/ot/505727</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505727 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505727">https://www.tenable.com/plugins/ot/505727</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Infinite Loop (CVE-2026-32777)]]></title>
            <link>https://www.tenable.com/plugins/ot/505726</link>
            <guid>https://www.tenable.com/plugins/ot/505726</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505726 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505726">https://www.tenable.com/plugins/ot/505726</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39871)]]></title>
            <link>https://www.tenable.com/plugins/ot/505725</link>
            <guid>https://www.tenable.com/plugins/ot/505725</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505725 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505725">https://www.tenable.com/plugins/ot/505725</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Validation of Specified Type of Input (CVE-2026-31424)]]></title>
            <link>https://www.tenable.com/plugins/ot/505724</link>
            <guid>https://www.tenable.com/plugins/ot/505724</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505724 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505724">https://www.tenable.com/plugins/ot/505724</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-23010)]]></title>
            <link>https://www.tenable.com/plugins/ot/505723</link>
            <guid>https://www.tenable.com/plugins/ot/505723</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505723 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505723">https://www.tenable.com/plugins/ot/505723</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition (CVE-2025-68264)]]></title>
            <link>https://www.tenable.com/plugins/ot/505722</link>
            <guid>https://www.tenable.com/plugins/ot/505722</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505722 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505722">https://www.tenable.com/plugins/ot/505722</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68725)]]></title>
            <link>https://www.tenable.com/plugins/ot/505721</link>
            <guid>https://www.tenable.com/plugins/ot/505721</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505721 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505721">https://www.tenable.com/plugins/ot/505721</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31680)]]></title>
            <link>https://www.tenable.com/plugins/ot/505720</link>
            <guid>https://www.tenable.com/plugins/ot/505720</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505720 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505720">https://www.tenable.com/plugins/ot/505720</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31447)]]></title>
            <link>https://www.tenable.com/plugins/ot/505719</link>
            <guid>https://www.tenable.com/plugins/ot/505719</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505719 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505719">https://www.tenable.com/plugins/ot/505719</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Classic Buffer Overflow (CVE-2025-21780)]]></title>
            <link>https://www.tenable.com/plugins/ot/505718</link>
            <guid>https://www.tenable.com/plugins/ot/505718</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505718 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505718">https://www.tenable.com/plugins/ot/505718</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-21925)]]></title>
            <link>https://www.tenable.com/plugins/ot/505717</link>
            <guid>https://www.tenable.com/plugins/ot/505717</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505717 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505717">https://www.tenable.com/plugins/ot/505717</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Operation on a Resource after Expiration or Release (CVE-2026-23271)]]></title>
            <link>https://www.tenable.com/plugins/ot/505716</link>
            <guid>https://www.tenable.com/plugins/ot/505716</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505716 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505716">https://www.tenable.com/plugins/ot/505716</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Write (CVE-2026-31494)]]></title>
            <link>https://www.tenable.com/plugins/ot/505715</link>
            <guid>https://www.tenable.com/plugins/ot/505715</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505715 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505715">https://www.tenable.com/plugins/ot/505715</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Unchecked Return Value (CVE-2026-22992)]]></title>
            <link>https://www.tenable.com/plugins/ot/505714</link>
            <guid>https://www.tenable.com/plugins/ot/505714</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505714 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505714">https://www.tenable.com/plugins/ot/505714</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Buffer Underflow (CVE-2026-23011)]]></title>
            <link>https://www.tenable.com/plugins/ot/505713</link>
            <guid>https://www.tenable.com/plugins/ot/505713</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505713 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505713">https://www.tenable.com/plugins/ot/505713</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2024-58011)]]></title>
            <link>https://www.tenable.com/plugins/ot/505712</link>
            <guid>https://www.tenable.com/plugins/ot/505712</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505712 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505712">https://www.tenable.com/plugins/ot/505712</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31737)]]></title>
            <link>https://www.tenable.com/plugins/ot/505711</link>
            <guid>https://www.tenable.com/plugins/ot/505711</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505711 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505711">https://www.tenable.com/plugins/ot/505711</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31469)]]></title>
            <link>https://www.tenable.com/plugins/ot/505710</link>
            <guid>https://www.tenable.com/plugins/ot/505710</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505710 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505710">https://www.tenable.com/plugins/ot/505710</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Release of Resource after Effective Lifetime (CVE-2026-22979)]]></title>
            <link>https://www.tenable.com/plugins/ot/505709</link>
            <guid>https://www.tenable.com/plugins/ot/505709</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505709 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505709">https://www.tenable.com/plugins/ot/505709</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31682)]]></title>
            <link>https://www.tenable.com/plugins/ot/505708</link>
            <guid>https://www.tenable.com/plugins/ot/505708</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505708 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505708">https://www.tenable.com/plugins/ot/505708</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31563)]]></title>
            <link>https://www.tenable.com/plugins/ot/505707</link>
            <guid>https://www.tenable.com/plugins/ot/505707</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505707 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505707">https://www.tenable.com/plugins/ot/505707</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68787)]]></title>
            <link>https://www.tenable.com/plugins/ot/505706</link>
            <guid>https://www.tenable.com/plugins/ot/505706</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505706 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505706">https://www.tenable.com/plugins/ot/505706</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Enforcement of Behavioral Workflow (CVE-2024-50063)]]></title>
            <link>https://www.tenable.com/plugins/ot/505705</link>
            <guid>https://www.tenable.com/plugins/ot/505705</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505705 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505705">https://www.tenable.com/plugins/ot/505705</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Integer Overflow or Wraparound (CVE-2026-23343)]]></title>
            <link>https://www.tenable.com/plugins/ot/505704</link>
            <guid>https://www.tenable.com/plugins/ot/505704</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505704 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505704">https://www.tenable.com/plugins/ot/505704</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Handling of Invalid Use of Special Elements (CVE-2025-61984)]]></title>
            <link>https://www.tenable.com/plugins/ot/505703</link>
            <guid>https://www.tenable.com/plugins/ot/505703</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505703 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505703">https://www.tenable.com/plugins/ot/505703</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38725)]]></title>
            <link>https://www.tenable.com/plugins/ot/505702</link>
            <guid>https://www.tenable.com/plugins/ot/505702</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505702 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>net: usb: asix_devices: add phy_mask for ax88772 mdio bus    Without setting phy_mask for ax88772 mdio bus, current driver may create  at most 32 mdio phy devices with phy address range from 0x00 ~ 0x1f.<br /></span><span>DLink DUB-E100 H/W Ver B1 is such a device. However, only one main phy device will bind to net phy driver. This is creating issue during system  suspend/resume since phy_polling_mode() in phy_state_machine() will  directly deference member of phydev->drv for non-main phy devices. Then  NULL pointer dereference issue will occur. Due to only external phy or  internal phy is necessary, add phy_mask for ax88772 mdio bus to workarnoud  the issue.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505702">https://www.tenable.com/plugins/ot/505702</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31507)]]></title>
            <link>https://www.tenable.com/plugins/ot/505701</link>
            <guid>https://www.tenable.com/plugins/ot/505701</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505701 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505701">https://www.tenable.com/plugins/ot/505701</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31414)]]></title>
            <link>https://www.tenable.com/plugins/ot/505700</link>
            <guid>https://www.tenable.com/plugins/ot/505700</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505700 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505700">https://www.tenable.com/plugins/ot/505700</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Validation of Specified Type of Input (CVE-2026-23365)]]></title>
            <link>https://www.tenable.com/plugins/ot/505699</link>
            <guid>https://www.tenable.com/plugins/ot/505699</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505699 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505699">https://www.tenable.com/plugins/ot/505699</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Uninitialized Resource (CVE-2026-23335)]]></title>
            <link>https://www.tenable.com/plugins/ot/505698</link>
            <guid>https://www.tenable.com/plugins/ot/505698</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505698 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505698">https://www.tenable.com/plugins/ot/505698</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-26783)]]></title>
            <link>https://www.tenable.com/plugins/ot/505697</link>
            <guid>https://www.tenable.com/plugins/ot/505697</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505697 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505697">https://www.tenable.com/plugins/ot/505697</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23019)]]></title>
            <link>https://www.tenable.com/plugins/ot/505696</link>
            <guid>https://www.tenable.com/plugins/ot/505696</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505696 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505696">https://www.tenable.com/plugins/ot/505696</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Read (CVE-2025-71098)]]></title>
            <link>https://www.tenable.com/plugins/ot/505695</link>
            <guid>https://www.tenable.com/plugins/ot/505695</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505695 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505695">https://www.tenable.com/plugins/ot/505695</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Initialization of Resource (CVE-2025-68291)]]></title>
            <link>https://www.tenable.com/plugins/ot/505694</link>
            <guid>https://www.tenable.com/plugins/ot/505694</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505694 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505694">https://www.tenable.com/plugins/ot/505694</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-58056)]]></title>
            <link>https://www.tenable.com/plugins/ot/505693</link>
            <guid>https://www.tenable.com/plugins/ot/505693</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505693 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505693">https://www.tenable.com/plugins/ot/505693</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-23319)]]></title>
            <link>https://www.tenable.com/plugins/ot/505692</link>
            <guid>https://www.tenable.com/plugins/ot/505692</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505692 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505692">https://www.tenable.com/plugins/ot/505692</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Divide By Zero (CVE-2025-38125)]]></title>
            <link>https://www.tenable.com/plugins/ot/505691</link>
            <guid>https://www.tenable.com/plugins/ot/505691</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505691 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505691">https://www.tenable.com/plugins/ot/505691</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-58086)]]></title>
            <link>https://www.tenable.com/plugins/ot/505690</link>
            <guid>https://www.tenable.com/plugins/ot/505690</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505690 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505690">https://www.tenable.com/plugins/ot/505690</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-31389)]]></title>
            <link>https://www.tenable.com/plugins/ot/505689</link>
            <guid>https://www.tenable.com/plugins/ot/505689</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505689 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505689">https://www.tenable.com/plugins/ot/505689</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38162)]]></title>
            <link>https://www.tenable.com/plugins/ot/505688</link>
            <guid>https://www.tenable.com/plugins/ot/505688</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505688 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505688">https://www.tenable.com/plugins/ot/505688</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incorrect Conversion between Numeric Types (CVE-2025-71104)]]></title>
            <link>https://www.tenable.com/plugins/ot/505687</link>
            <guid>https://www.tenable.com/plugins/ot/505687</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505687 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505687">https://www.tenable.com/plugins/ot/505687</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-36927)]]></title>
            <link>https://www.tenable.com/plugins/ot/505686</link>
            <guid>https://www.tenable.com/plugins/ot/505686</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505686 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505686">https://www.tenable.com/plugins/ot/505686</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Default Case in Multiple Condition Expression (CVE-2025-39748)]]></title>
            <link>https://www.tenable.com/plugins/ot/505685</link>
            <guid>https://www.tenable.com/plugins/ot/505685</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505685 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505685">https://www.tenable.com/plugins/ot/505685</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incorrect Calculation of Buffer Size (CVE-2026-31416)]]></title>
            <link>https://www.tenable.com/plugins/ot/505684</link>
            <guid>https://www.tenable.com/plugins/ot/505684</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505684 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505684">https://www.tenable.com/plugins/ot/505684</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Write (CVE-2026-41989)]]></title>
            <link>https://www.tenable.com/plugins/ot/505683</link>
            <guid>https://www.tenable.com/plugins/ot/505683</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505683 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505683">https://www.tenable.com/plugins/ot/505683</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23054)]]></title>
            <link>https://www.tenable.com/plugins/ot/505682</link>
            <guid>https://www.tenable.com/plugins/ot/505682</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505682 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505682">https://www.tenable.com/plugins/ot/505682</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68814)]]></title>
            <link>https://www.tenable.com/plugins/ot/505681</link>
            <guid>https://www.tenable.com/plugins/ot/505681</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505681 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505681">https://www.tenable.com/plugins/ot/505681</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incorrect Conversion between Numeric Types (CVE-2026-23457)]]></title>
            <link>https://www.tenable.com/plugins/ot/505680</link>
            <guid>https://www.tenable.com/plugins/ot/505680</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505680 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505680">https://www.tenable.com/plugins/ot/505680</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Buffer Under-read (CVE-2026-5928)]]></title>
            <link>https://www.tenable.com/plugins/ot/505679</link>
            <guid>https://www.tenable.com/plugins/ot/505679</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505679 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505679">https://www.tenable.com/plugins/ot/505679</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-27056)]]></title>
            <link>https://www.tenable.com/plugins/ot/505678</link>
            <guid>https://www.tenable.com/plugins/ot/505678</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505678 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505678">https://www.tenable.com/plugins/ot/505678</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-21706)]]></title>
            <link>https://www.tenable.com/plugins/ot/505677</link>
            <guid>https://www.tenable.com/plugins/ot/505677</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505677 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505677">https://www.tenable.com/plugins/ot/505677</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2024-42079)]]></title>
            <link>https://www.tenable.com/plugins/ot/505676</link>
            <guid>https://www.tenable.com/plugins/ot/505676</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505676 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505676">https://www.tenable.com/plugins/ot/505676</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68363)]]></title>
            <link>https://www.tenable.com/plugins/ot/505675</link>
            <guid>https://www.tenable.com/plugins/ot/505675</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505675 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505675">https://www.tenable.com/plugins/ot/505675</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Read (CVE-2025-22121)]]></title>
            <link>https://www.tenable.com/plugins/ot/505674</link>
            <guid>https://www.tenable.com/plugins/ot/505674</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505674 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505674">https://www.tenable.com/plugins/ot/505674</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition within a Thread (CVE-2026-31466)]]></title>
            <link>https://www.tenable.com/plugins/ot/505673</link>
            <guid>https://www.tenable.com/plugins/ot/505673</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505673 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505673">https://www.tenable.com/plugins/ot/505673</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2025-71131)]]></title>
            <link>https://www.tenable.com/plugins/ot/505672</link>
            <guid>https://www.tenable.com/plugins/ot/505672</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505672 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505672">https://www.tenable.com/plugins/ot/505672</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71112)]]></title>
            <link>https://www.tenable.com/plugins/ot/505671</link>
            <guid>https://www.tenable.com/plugins/ot/505671</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505671 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505671">https://www.tenable.com/plugins/ot/505671</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68782)]]></title>
            <link>https://www.tenable.com/plugins/ot/505670</link>
            <guid>https://www.tenable.com/plugins/ot/505670</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505670 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505670">https://www.tenable.com/plugins/ot/505670</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-68337)]]></title>
            <link>https://www.tenable.com/plugins/ot/505669</link>
            <guid>https://www.tenable.com/plugins/ot/505669</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505669 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505669">https://www.tenable.com/plugins/ot/505669</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Buffer Over-read (CVE-2026-6238)]]></title>
            <link>https://www.tenable.com/plugins/ot/505668</link>
            <guid>https://www.tenable.com/plugins/ot/505668</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505668 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505668">https://www.tenable.com/plugins/ot/505668</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-40219)]]></title>
            <link>https://www.tenable.com/plugins/ot/505667</link>
            <guid>https://www.tenable.com/plugins/ot/505667</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505667 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505667">https://www.tenable.com/plugins/ot/505667</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2025-23143)]]></title>
            <link>https://www.tenable.com/plugins/ot/505666</link>
            <guid>https://www.tenable.com/plugins/ot/505666</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505666 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>net: Fix null-ptr-deref by sock_lock_init_class_and_name() and rmmod.<br /></span><span>When I ran the repro [0] and waited a few seconds, I observed two LOCKDEP splats: a warning immediately followed by a null-ptr-deref.<br /></span><span>[1]    Reproduction Steps:      1) Mount CIFS    2) Add an iptables rule to drop incoming FIN packets for CIFS    3) Unmount CIFS    4) Unload the CIFS module    5) Remove the iptables rule    At step 3), the CIFS module calls sock_release() for the underlying  TCP socket, and it returns quickly.  However, the socket remains in  FIN_WAIT_1 because incoming FIN packets are dropped.    At this point, the module's refcnt is 0 while the socket is still  alive, so the following rmmod command succeeds.      # ss -tan    State      Recv-Q Send-Q Local Address:Port  Peer Address:Port    FIN-WAIT-1 0      477 10.0.2.15:51062   10.0.0.137:445      # lsmod | grep cifs    cifs 1159168  0    This highlights a discrepancy between the lifetime of the CIFS module  and the underlying TCP socket.  Even after CIFS calls sock_release()  and it returns, the TCP socket does not die immediately in order to  close the connection gracefully.    While this is generally fine, it causes an issue with LOCKDEP because  CIFS assigns a different lock class to the TCP socket's sk->sk_lock  using sock_lock_init_class_and_name().    Once an incoming packet is processed for the socket or a timer fires,  sk->sk_lock is acquired.<br /></span><span>Then, LOCKDEP checks the lock context in check_wait_context(), where hlock_class() is called to retrieve the lock class.  However, since the module has already been unloaded, hlock_class() logs a warning and returns NULL, triggering the null-ptr-deref.    If LOCKDEP is enabled, we must ensure that a module calling sock_lock_init_class_and_name() (CIFS, NFS, etc) cannot be unloaded while such a socket is still alive to prevent this issue.    Let's hold the module reference in sock_lock_init_class_and_name()  and release it when the socket is freed in sk_prot_free().    Note that sock_lock_init() clears sk->sk_owner for svc_create_socket()  that calls sock_lock_init_class_and_name() for a listening socket,  which clones a socket by sk_clone_lock() without GFP_ZERO.    [0]:<br /></span><span>CIFS_SERVER=10.0.0.137 CIFS_PATH=//${CIFS_SERVER}/Users/Administrator/Desktop/CIFS_TEST DEV=enp0s3  CRED=/root/WindowsCredential.txt    MNT=$(mktemp -d /tmp/XXXXXX)  mount -t cifs ${CIFS_PATH} ${MNT} -o vers=3.0,credentials=${CRED},cache=none,echo_interval=1    iptables -A INPUT -s ${CIFS_SERVER} -j DROP    for i in $(seq 10);  do      umount ${MNT}      rmmod cifs      sleep 1  done    rm -r ${MNT}    iptables<br /></span><span>-D INPUT -s ${CIFS_SERVER} -j DROP    [1]:  DEBUG_LOCKS_WARN_ON(1) WARNING: CPU: 10 PID: 0 at kernel/locking/lockdep.c:234 hlock_class (kernel/locking/lockdep.c:234 kernel/locking/lockdep.c:223)  Modules linked in: cifs_arc4 nls_ucs2_utils cifs_md4 [last unloaded: cifs] CPU: 10 UID: 0 PID: 0 Comm: swapper/10 Not tainted 6.14.0 #36 Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.0-0-gd239552ce722-prebuilt.qemu.org 04/01/2014  RIP:<br /></span><span>0010:hlock_class (kernel/locking/lockdep.c:234 kernel/locking/lockdep.c:223)  ...  Call Trace:   <IRQ><br /></span><span>__lock_acquire (kernel/locking/lockdep.c:4853 kernel/locking/lockdep.c:5178)   lock_acquire (kernel/locking/lockdep.c:469 kernel/locking/lockdep.c:5853 kernel/locking/lockdep.c:5816)   _raw_spin_lock_nested (kernel/locking/spinlock.c:379)   tcp_v4_rcv (./include/linux/skbuff.h:1678 ./include/net/tcp.h:2547 net/ipv4/tcp_ipv4.c:2350)  ...    BUG: kernel NULL pointer dereference, address: 00000000000000c4   PF: supervisor read access in kernel mode   PF: error_code(0x0000) - not-present page  PGD 0  Oops:<br /></span><span>Oops: 0000 [#1] PREEMPT SMP NOPTI  CPU: 10 UID: 0 PID: 0 Comm:<br /></span><span>swapper/10 Tainted: G        W          6.14.0 #36  Tainted: [W]=WARN Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.0-0-gd239552ce722-prebuilt.qemu.org 04/01/2014  RIP:<br /></span><span>0010:__lock_acquire (kernel/  ---truncated---<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505666">https://www.tenable.com/plugins/ot/505666</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-37959)]]></title>
            <link>https://www.tenable.com/plugins/ot/505665</link>
            <guid>https://www.tenable.com/plugins/ot/505665</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505665 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505665">https://www.tenable.com/plugins/ot/505665</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Update of Reference Count (CVE-2025-39764)]]></title>
            <link>https://www.tenable.com/plugins/ot/505664</link>
            <guid>https://www.tenable.com/plugins/ot/505664</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505664 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505664">https://www.tenable.com/plugins/ot/505664</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-31421)]]></title>
            <link>https://www.tenable.com/plugins/ot/505663</link>
            <guid>https://www.tenable.com/plugins/ot/505663</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505663 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505663">https://www.tenable.com/plugins/ot/505663</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23284)]]></title>
            <link>https://www.tenable.com/plugins/ot/505662</link>
            <guid>https://www.tenable.com/plugins/ot/505662</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505662 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505662">https://www.tenable.com/plugins/ot/505662</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23086)]]></title>
            <link>https://www.tenable.com/plugins/ot/505661</link>
            <guid>https://www.tenable.com/plugins/ot/505661</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505661 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505661">https://www.tenable.com/plugins/ot/505661</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-21853)]]></title>
            <link>https://www.tenable.com/plugins/ot/505660</link>
            <guid>https://www.tenable.com/plugins/ot/505660</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505660 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505660">https://www.tenable.com/plugins/ot/505660</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2024-50164)]]></title>
            <link>https://www.tenable.com/plugins/ot/505659</link>
            <guid>https://www.tenable.com/plugins/ot/505659</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505659 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505659">https://www.tenable.com/plugins/ot/505659</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Resource Locking (CVE-2026-23103)]]></title>
            <link>https://www.tenable.com/plugins/ot/505658</link>
            <guid>https://www.tenable.com/plugins/ot/505658</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505658 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505658">https://www.tenable.com/plugins/ot/505658</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31665)]]></title>
            <link>https://www.tenable.com/plugins/ot/505657</link>
            <guid>https://www.tenable.com/plugins/ot/505657</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505657 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505657">https://www.tenable.com/plugins/ot/505657</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31452)]]></title>
            <link>https://www.tenable.com/plugins/ot/505656</link>
            <guid>https://www.tenable.com/plugins/ot/505656</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505656 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505656">https://www.tenable.com/plugins/ot/505656</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Update of Reference Count (CVE-2025-38732)]]></title>
            <link>https://www.tenable.com/plugins/ot/505655</link>
            <guid>https://www.tenable.com/plugins/ot/505655</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505655 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>netfilter: nf_reject: don't leak dst refcount for loopback packets recent patches to add a WARN() when replacing skb dst entry found an old bug:    WARNING: include/linux/skbuff.h:1165 skb_dst_check_unset include/linux/skbuff.h:1164 [inline]  WARNING:<br /></span><span>include/linux/skbuff.h:1165 skb_dst_set include/linux/skbuff.h:1210 [inline]  WARNING: include/linux/skbuff.h:1165 nf_reject_fill_skb_dst+0x2a4/0x330 net/ipv4/netfilter/nf_reject_ipv4.c:234  [..]  Call Trace:<br /></span><span>nf_send_unreach+0x17b/0x6e0 net/ipv4/netfilter/nf_reject_ipv4.c:325 nft_reject_inet_eval+0x4bc/0x690 net/netfilter/nft_reject_inet.c:27 expr_call_ops_eval net/netfilter/nf_tables_core.c:237 [inline]   ..<br /></span><span>This is because blamed commit forgot about loopback packets.  Such packets already have a dst_entry attached, even at PRE_ROUTING stage.<br /></span><span>Instead of checking hook just check if the skb already has a route attached to it.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505655">https://www.tenable.com/plugins/ot/505655</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Race Condition within a Thread (CVE-2025-38681)]]></title>
            <link>https://www.tenable.com/plugins/ot/505654</link>
            <guid>https://www.tenable.com/plugins/ot/505654</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505654 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>mm/ptdump: take the memory hotplug lock inside ptdump_walk_pgd() Memory hot remove unmaps and tears down various kernel page table regions  as required.  The ptdump code can race with concurrent modifications of  the kernel page tables.  When leaf entries are modified concurrently, the  dump code may log stale or inconsistent information for a VA range, but  this is otherwise not harmful.    But when intermediate levels of kernel page table are freed, the dump code will continue to use memory that has been freed and potentially reallocated for another purpose.  In such cases, the ptdump code may dereference bogus addresses, leading to a number of potential problems.    To avoid the above mentioned race condition, platforms such as arm64,  riscv and s390 take memory hotplug lock, while dumping kernel page table  via the sysfs interface /sys/kernel/debug/kernel_page_tables.    Similar race condition exists while checking for pages that might have  been marked W+X via /sys/kernel/debug/kernel_page_tables/check_wx_pages  which in turn calls ptdump_check_wx().  Instead of solving this race  condition again, let's just move the memory hotplug lock inside generic ptdump_check_wx() which will benefit both the scenarios.    Drop get_online_mems() and put_online_mems() combination from all existing platform ptdump code paths.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505654">https://www.tenable.com/plugins/ot/505654</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Reachable Assertion (CVE-2026-27135)]]></title>
            <link>https://www.tenable.com/plugins/ot/505653</link>
            <guid>https://www.tenable.com/plugins/ot/505653</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505653 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505653">https://www.tenable.com/plugins/ot/505653</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38232)]]></title>
            <link>https://www.tenable.com/plugins/ot/505652</link>
            <guid>https://www.tenable.com/plugins/ot/505652</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505652 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505652">https://www.tenable.com/plugins/ot/505652</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-23277)]]></title>
            <link>https://www.tenable.com/plugins/ot/505651</link>
            <guid>https://www.tenable.com/plugins/ot/505651</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505651 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505651">https://www.tenable.com/plugins/ot/505651</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Read (CVE-2026-23455)]]></title>
            <link>https://www.tenable.com/plugins/ot/505650</link>
            <guid>https://www.tenable.com/plugins/ot/505650</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505650 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505650">https://www.tenable.com/plugins/ot/505650</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-40355)]]></title>
            <link>https://www.tenable.com/plugins/ot/505649</link>
            <guid>https://www.tenable.com/plugins/ot/505649</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505649 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505649">https://www.tenable.com/plugins/ot/505649</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39845)]]></title>
            <link>https://www.tenable.com/plugins/ot/505648</link>
            <guid>https://www.tenable.com/plugins/ot/505648</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505648 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arch_sync_kernel_mappings()    Define ARCH_PAGE_TABLE_SYNC_MASK and arch_sync_kernel_mappings() to ensure  page tables are properly synchronized when calling p*d_populate_kernel().    For 5-level paging, synchronization is performed via  pgd_populate_kernel().  In 4-level paging, pgd_populate() is a no-op, so  synchronization is instead performed at the P4D level via  p4d_populate_kernel().    This fixes intermittent boot failures on systems using 4-level paging and a large amount of persistent memory:      BUG: unable to handle page fault for address: ffffe70000000034    #PF: supervisor write access in kernel mode    #PF: error_code(0x0002) - not-present page    PGD 0 P4D 0    Oops: 0002 [#1] SMP NOPTI    RIP:<br /></span><span>0010:__init_single_page+0x9/0x6d    Call Trace:     <TASK><br /></span><span>__init_zone_device_page+0x17/0x5d memmap_init_zone_device+0x154/0x1bb     pagemap_range+0x2e0/0x40f memremap_pages+0x10b/0x2f0     devm_memremap_pages+0x1e/0x60 dev_dax_probe+0xce/0x2ec [device_dax]     dax_bus_probe+0x6d/0xc9 [... snip ...]     </TASK>    It also fixes a crash in vmemmap_set_pmd() caused by accessing vmemmap  before sync_global_pgds() [1]:      BUG: unable to handle page fault for address: ffffeb3ff1200000    #PF: supervisor write access in kernel mode    #PF: error_code(0x0002) - not-present page    PGD 0 P4D 0 Oops: Oops: 0002 [#1] PREEMPT SMP NOPTI    Tainted: [W]=WARN    RIP:<br /></span><span>0010:vmemmap_set_pmd+0xff/0x230     <TASK> vmemmap_populate_hugepages+0x176/0x180     vmemmap_populate+0x34/0x80<br /></span><span>__populate_section_memmap+0x41/0x90     sparse_add_section+0x121/0x3e0<br /></span><span>__add_pages+0xba/0x150     add_pages+0x1d/0x70 memremap_pages+0x3dc/0x810     devm_memremap_pages+0x1c/0x60 xe_devm_add+0x8b/0x100 [xe]     xe_tile_init_noalloc+0x6a/0x70 [xe] xe_device_probe+0x48c/0x740 [xe]     [... snip ...]<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505648">https://www.tenable.com/plugins/ot/505648</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incorrect Synchronization (CVE-2026-23110)]]></title>
            <link>https://www.tenable.com/plugins/ot/505647</link>
            <guid>https://www.tenable.com/plugins/ot/505647</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505647 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505647">https://www.tenable.com/plugins/ot/505647</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71086)]]></title>
            <link>https://www.tenable.com/plugins/ot/505646</link>
            <guid>https://www.tenable.com/plugins/ot/505646</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505646 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505646">https://www.tenable.com/plugins/ot/505646</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-22982)]]></title>
            <link>https://www.tenable.com/plugins/ot/505645</link>
            <guid>https://www.tenable.com/plugins/ot/505645</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505645 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505645">https://www.tenable.com/plugins/ot/505645</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23060)]]></title>
            <link>https://www.tenable.com/plugins/ot/505644</link>
            <guid>https://www.tenable.com/plugins/ot/505644</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505644 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505644">https://www.tenable.com/plugins/ot/505644</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Release of Resource after Effective Lifetime (CVE-2025-71097)]]></title>
            <link>https://www.tenable.com/plugins/ot/505643</link>
            <guid>https://www.tenable.com/plugins/ot/505643</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505643 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505643">https://www.tenable.com/plugins/ot/505643</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Write (CVE-2025-22056)]]></title>
            <link>https://www.tenable.com/plugins/ot/505642</link>
            <guid>https://www.tenable.com/plugins/ot/505642</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505642 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505642">https://www.tenable.com/plugins/ot/505642</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-22095)]]></title>
            <link>https://www.tenable.com/plugins/ot/505641</link>
            <guid>https://www.tenable.com/plugins/ot/505641</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505641 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505641">https://www.tenable.com/plugins/ot/505641</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-39691)]]></title>
            <link>https://www.tenable.com/plugins/ot/505640</link>
            <guid>https://www.tenable.com/plugins/ot/505640</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505640 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>fs/buffer: fix use-after-free when call bh_read() helper    There's issue as follows:  BUG: KASAN: stack-out-of-bounds in end_buffer_read_sync+0xe3/0x110  Read of size 8 at addr ffffc9000168f7f8 by task swapper/3/0  CPU: 3 UID: 0 PID: 0 Comm:<br /></span><span>swapper/3 Not tainted 6.16.0-862.14.0.6.x86_64  Hardware name: QEMU Standard PC (i440FX + PIIX, 1996)  Call Trace:   <IRQ> dump_stack_lvl+0x55/0x70 print_address_description.constprop.0+0x2c/0x390 print_report+0xb4/0x270   kasan_report+0xb8/0xf0 end_buffer_read_sync+0xe3/0x110   end_bio_bh_io_sync+0x56/0x80 blk_update_request+0x30a/0x720   scsi_end_request+0x51/0x2b0 scsi_io_completion+0xe3/0x480   ? scsi_device_unbusy+0x11e/0x160 blk_complete_reqs+0x7b/0x90   handle_softirqs+0xef/0x370 irq_exit_rcu+0xa5/0xd0   sysvec_apic_timer_interrupt+0x6e/0x90 </IRQ>     Above issue happens when do ntfs3 filesystem mount, issue may happens   as follows:             mount IRQ  ntfs_fill_super    read_cache_page      do_read_cache_folio filemap_read_folio          mpage_read_folio do_mpage_readpage            ntfs_get_block_vbo             bh_read submit_bh               wait_on_buffer(bh);<br /></span><span>blk_complete_reqs scsi_io_completion scsi_end_request blk_update_request end_bio_bh_io_sync end_buffer_read_sync<br /></span><span>__end_buffer_read_notouch unlock_buffer                wait_on_buffer(bh);--> return will return to caller                                              put_bh<br /></span><span>--> trigger stack-out-of-bounds  In the mpage_read_folio() function, the stack variable 'map_bh' is  passed to ntfs_get_block_vbo(). Once unlock_buffer() unlocks and  wait_on_buffer() returns to continue processing, the stack variable  is likely to be reclaimed.<br /></span><span>Consequently, during the end_buffer_read_sync()  process, calling put_bh() may result in stack overrun.    If the bh is not allocated on the stack, it belongs to a folio.  Freeing  a buffer head which belongs to a folio is done by drop_buffers() which  will fail to free buffers which are still locked.  So it is safe to call  put_bh() before __end_buffer_read_notouch().<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505640">https://www.tenable.com/plugins/ot/505640</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Initialization of Resource (CVE-2026-23290)]]></title>
            <link>https://www.tenable.com/plugins/ot/505639</link>
            <guid>https://www.tenable.com/plugins/ot/505639</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505639 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505639">https://www.tenable.com/plugins/ot/505639</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39953)]]></title>
            <link>https://www.tenable.com/plugins/ot/505638</link>
            <guid>https://www.tenable.com/plugins/ot/505638</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505638 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505638">https://www.tenable.com/plugins/ot/505638</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-22111)]]></title>
            <link>https://www.tenable.com/plugins/ot/505637</link>
            <guid>https://www.tenable.com/plugins/ot/505637</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505637 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505637">https://www.tenable.com/plugins/ot/505637</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31504)]]></title>
            <link>https://www.tenable.com/plugins/ot/505636</link>
            <guid>https://www.tenable.com/plugins/ot/505636</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505636 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505636">https://www.tenable.com/plugins/ot/505636</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Deadlock (CVE-2026-23446)]]></title>
            <link>https://www.tenable.com/plugins/ot/505635</link>
            <guid>https://www.tenable.com/plugins/ot/505635</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505635 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505635">https://www.tenable.com/plugins/ot/505635</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71095)]]></title>
            <link>https://www.tenable.com/plugins/ot/505634</link>
            <guid>https://www.tenable.com/plugins/ot/505634</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505634 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505634">https://www.tenable.com/plugins/ot/505634</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-21875)]]></title>
            <link>https://www.tenable.com/plugins/ot/505633</link>
            <guid>https://www.tenable.com/plugins/ot/505633</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505633 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505633">https://www.tenable.com/plugins/ot/505633</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Handling of Structural Elements (CVE-2026-43033)]]></title>
            <link>https://www.tenable.com/plugins/ot/505632</link>
            <guid>https://www.tenable.com/plugins/ot/505632</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505632 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505632">https://www.tenable.com/plugins/ot/505632</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31651)]]></title>
            <link>https://www.tenable.com/plugins/ot/505631</link>
            <guid>https://www.tenable.com/plugins/ot/505631</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505631 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505631">https://www.tenable.com/plugins/ot/505631</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Access of Uninitialized Pointer (CVE-2026-31427)]]></title>
            <link>https://www.tenable.com/plugins/ot/505630</link>
            <guid>https://www.tenable.com/plugins/ot/505630</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505630 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505630">https://www.tenable.com/plugins/ot/505630</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incomplete Internal State Distinction (CVE-2026-43030)]]></title>
            <link>https://www.tenable.com/plugins/ot/505629</link>
            <guid>https://www.tenable.com/plugins/ot/505629</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505629 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505629">https://www.tenable.com/plugins/ot/505629</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71197)]]></title>
            <link>https://www.tenable.com/plugins/ot/505628</link>
            <guid>https://www.tenable.com/plugins/ot/505628</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505628 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505628">https://www.tenable.com/plugins/ot/505628</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Update of Reference Count (CVE-2026-23391)]]></title>
            <link>https://www.tenable.com/plugins/ot/505627</link>
            <guid>https://www.tenable.com/plugins/ot/505627</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505627 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505627">https://www.tenable.com/plugins/ot/505627</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Integer Overflow or Wraparound (CVE-2026-23379)]]></title>
            <link>https://www.tenable.com/plugins/ot/505626</link>
            <guid>https://www.tenable.com/plugins/ot/505626</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505626 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505626">https://www.tenable.com/plugins/ot/505626</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38322)]]></title>
            <link>https://www.tenable.com/plugins/ot/505625</link>
            <guid>https://www.tenable.com/plugins/ot/505625</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505625 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>perf/x86/intel: Fix crash in icl_update_topdown_event()    The perf_fuzzer found a hard-lockup crash on a RaptorLake machine:<br /></span><span>Oops: general protection fault, maybe for address 0xffff89aeceab400:<br /></span><span>0000    CPU: 23 UID: 0 PID: 0 Comm: swapper/23    Tainted: [W]=WARN Hardware name: Dell Inc. Precision 9660/0VJ762    RIP:<br /></span><span>0010:native_read_pmc+0x7/0x40    Code: cc e8 8d a9 01 00 48 89 03 5b cd cc cc cc cc 0f 1f ...    RSP: 000:fffb03100273de8 EFLAGS: 00010046 ....    Call Trace:      <TASK> icl_update_topdown_event+0x165/0x190      ? ktime_get+0x38/0xd0 intel_pmu_read_event+0xf9/0x210      __perf_event_read+0xf9/0x210 CPUs 16-23 are E-core CPUs that don't support the perf metrics feature.  The icl_update_topdown_event() should not be invoked on these CPUs.    It's a regression of commit:      f9bdf1f95339 (perf/x86/intel: Avoid disable PMU if !cpuc->enabled in sample read) The bug introduced by that commit is that the is_topdown_event() function  is mistakenly used to replace the is_topdown_count() call to check if the  topdown functions for the perf metrics feature should be invoked.    Fix it.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505625">https://www.tenable.com/plugins/ot/505625</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-23438)]]></title>
            <link>https://www.tenable.com/plugins/ot/505624</link>
            <guid>https://www.tenable.com/plugins/ot/505624</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505624 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505624">https://www.tenable.com/plugins/ot/505624</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2025-68776)]]></title>
            <link>https://www.tenable.com/plugins/ot/505623</link>
            <guid>https://www.tenable.com/plugins/ot/505623</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505623 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505623">https://www.tenable.com/plugins/ot/505623</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Release of Resource after Effective Lifetime (CVE-2026-31518)]]></title>
            <link>https://www.tenable.com/plugins/ot/505622</link>
            <guid>https://www.tenable.com/plugins/ot/505622</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505622 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505622">https://www.tenable.com/plugins/ot/505622</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-22107)]]></title>
            <link>https://www.tenable.com/plugins/ot/505621</link>
            <guid>https://www.tenable.com/plugins/ot/505621</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505621 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505621">https://www.tenable.com/plugins/ot/505621</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Plaintext Storage of a Password (CVE-2026-23370)]]></title>
            <link>https://www.tenable.com/plugins/ot/505620</link>
            <guid>https://www.tenable.com/plugins/ot/505620</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505620 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505620">https://www.tenable.com/plugins/ot/505620</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-23368)]]></title>
            <link>https://www.tenable.com/plugins/ot/505619</link>
            <guid>https://www.tenable.com/plugins/ot/505619</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505619 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505619">https://www.tenable.com/plugins/ot/505619</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Resource Shutdown or Release (CVE-2024-47736)]]></title>
            <link>https://www.tenable.com/plugins/ot/505618</link>
            <guid>https://www.tenable.com/plugins/ot/505618</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505618 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505618">https://www.tenable.com/plugins/ot/505618</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution (CVE-2024-28956)]]></title>
            <link>https://www.tenable.com/plugins/ot/505617</link>
            <guid>https://www.tenable.com/plugins/ot/505617</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505617 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505617">https://www.tenable.com/plugins/ot/505617</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-31403)]]></title>
            <link>https://www.tenable.com/plugins/ot/505616</link>
            <guid>https://www.tenable.com/plugins/ot/505616</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505616 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505616">https://www.tenable.com/plugins/ot/505616</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Uninitialized Variable (CVE-2024-50014)]]></title>
            <link>https://www.tenable.com/plugins/ot/505615</link>
            <guid>https://www.tenable.com/plugins/ot/505615</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505615 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505615">https://www.tenable.com/plugins/ot/505615</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-40105)]]></title>
            <link>https://www.tenable.com/plugins/ot/505614</link>
            <guid>https://www.tenable.com/plugins/ot/505614</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505614 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505614">https://www.tenable.com/plugins/ot/505614</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-39826)]]></title>
            <link>https://www.tenable.com/plugins/ot/505613</link>
            <guid>https://www.tenable.com/plugins/ot/505613</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505613 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>net: rose: convert 'use' field to refcount_t    The 'use' field in struct rose_neigh is used as a reference counter but  lacks atomicity.<br /></span><span>This can lead to race conditions where a rose_neigh  structure is freed while still being referenced by other code paths.    For example, when rose_neigh->use becomes zero during an ioctl operation via rose_rt_ioctl(), the structure may be removed while its timer is still active, potentially causing use-after-free issues.    This patch changes the type of 'use' from unsigned short to refcount_t and updates all code paths to use rose_neigh_hold() and rose_neigh_put() which  operate reference counts atomically.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505613">https://www.tenable.com/plugins/ot/505613</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-71113)]]></title>
            <link>https://www.tenable.com/plugins/ot/505612</link>
            <guid>https://www.tenable.com/plugins/ot/505612</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505612 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505612">https://www.tenable.com/plugins/ot/505612</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2024-54458)]]></title>
            <link>https://www.tenable.com/plugins/ot/505611</link>
            <guid>https://www.tenable.com/plugins/ot/505611</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505611 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505611">https://www.tenable.com/plugins/ot/505611</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use After Free (CVE-2025-21861)]]></title>
            <link>https://www.tenable.com/plugins/ot/505610</link>
            <guid>https://www.tenable.com/plugins/ot/505610</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505610 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505610">https://www.tenable.com/plugins/ot/505610</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Read (CVE-2026-43025)]]></title>
            <link>https://www.tenable.com/plugins/ot/505609</link>
            <guid>https://www.tenable.com/plugins/ot/505609</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505609 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505609">https://www.tenable.com/plugins/ot/505609</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2025-68818)]]></title>
            <link>https://www.tenable.com/plugins/ot/505608</link>
            <guid>https://www.tenable.com/plugins/ot/505608</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505608 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505608">https://www.tenable.com/plugins/ot/505608</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Synchronization (CVE-2026-23434)]]></title>
            <link>https://www.tenable.com/plugins/ot/505607</link>
            <guid>https://www.tenable.com/plugins/ot/505607</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505607 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505607">https://www.tenable.com/plugins/ot/505607</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31485)]]></title>
            <link>https://www.tenable.com/plugins/ot/505606</link>
            <guid>https://www.tenable.com/plugins/ot/505606</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505606 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505606">https://www.tenable.com/plugins/ot/505606</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Signal Handler Race Condition (CVE-2026-23273)]]></title>
            <link>https://www.tenable.com/plugins/ot/505605</link>
            <guid>https://www.tenable.com/plugins/ot/505605</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505605 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505605">https://www.tenable.com/plugins/ot/505605</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Write (CVE-2026-23359)]]></title>
            <link>https://www.tenable.com/plugins/ot/505604</link>
            <guid>https://www.tenable.com/plugins/ot/505604</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505604 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505604">https://www.tenable.com/plugins/ot/505604</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Signal Handler Race Condition (CVE-2026-23340)]]></title>
            <link>https://www.tenable.com/plugins/ot/505603</link>
            <guid>https://www.tenable.com/plugins/ot/505603</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505603 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505603">https://www.tenable.com/plugins/ot/505603</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Release of Invalid Pointer or Reference (CVE-2026-31533)]]></title>
            <link>https://www.tenable.com/plugins/ot/505602</link>
            <guid>https://www.tenable.com/plugins/ot/505602</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505602 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505602">https://www.tenable.com/plugins/ot/505602</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31448)]]></title>
            <link>https://www.tenable.com/plugins/ot/505601</link>
            <guid>https://www.tenable.com/plugins/ot/505601</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505601 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505601">https://www.tenable.com/plugins/ot/505601</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Handling of Structural Elements (CVE-2026-23154)]]></title>
            <link>https://www.tenable.com/plugins/ot/505600</link>
            <guid>https://www.tenable.com/plugins/ot/505600</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505600 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505600">https://www.tenable.com/plugins/ot/505600</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-38192)]]></title>
            <link>https://www.tenable.com/plugins/ot/505599</link>
            <guid>https://www.tenable.com/plugins/ot/505599</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505599 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505599">https://www.tenable.com/plugins/ot/505599</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Write-what-where Condition (CVE-2026-43284)]]></title>
            <link>https://www.tenable.com/plugins/ot/505598</link>
            <guid>https://www.tenable.com/plugins/ot/505598</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505598 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505598">https://www.tenable.com/plugins/ot/505598</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Buffer Access with Incorrect Length Value (CVE-2026-23474)]]></title>
            <link>https://www.tenable.com/plugins/ot/505597</link>
            <guid>https://www.tenable.com/plugins/ot/505597</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505597 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505597">https://www.tenable.com/plugins/ot/505597</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2024-50298)]]></title>
            <link>https://www.tenable.com/plugins/ot/505596</link>
            <guid>https://www.tenable.com/plugins/ot/505596</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505596 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505596">https://www.tenable.com/plugins/ot/505596</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Integer Overflow or Wraparound (CVE-2026-31417)]]></title>
            <link>https://www.tenable.com/plugins/ot/505595</link>
            <guid>https://www.tenable.com/plugins/ot/505595</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505595 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505595">https://www.tenable.com/plugins/ot/505595</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Access of Uninitialized Pointer (CVE-2026-31428)]]></title>
            <link>https://www.tenable.com/plugins/ot/505594</link>
            <guid>https://www.tenable.com/plugins/ot/505594</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505594 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505594">https://www.tenable.com/plugins/ot/505594</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Use of Uninitialized Resource (CVE-2026-43035)]]></title>
            <link>https://www.tenable.com/plugins/ot/505593</link>
            <guid>https://www.tenable.com/plugins/ot/505593</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505593 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505593">https://www.tenable.com/plugins/ot/505593</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improperly Implemented Security Check for Standard (CVE-2026-43057)]]></title>
            <link>https://www.tenable.com/plugins/ot/505592</link>
            <guid>https://www.tenable.com/plugins/ot/505592</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505592 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505592">https://www.tenable.com/plugins/ot/505592</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Signal Handler Race Condition (CVE-2026-23452)]]></title>
            <link>https://www.tenable.com/plugins/ot/505591</link>
            <guid>https://www.tenable.com/plugins/ot/505591</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505591 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505591">https://www.tenable.com/plugins/ot/505591</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-37980)]]></title>
            <link>https://www.tenable.com/plugins/ot/505590</link>
            <guid>https://www.tenable.com/plugins/ot/505590</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505590 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505590">https://www.tenable.com/plugins/ot/505590</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Missing Report of Error Condition (CVE-2026-23422)]]></title>
            <link>https://www.tenable.com/plugins/ot/505589</link>
            <guid>https://www.tenable.com/plugins/ot/505589</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505589 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505589">https://www.tenable.com/plugins/ot/505589</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Infinite Loop (CVE-2026-23113)]]></title>
            <link>https://www.tenable.com/plugins/ot/505588</link>
            <guid>https://www.tenable.com/plugins/ot/505588</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505588 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505588">https://www.tenable.com/plugins/ot/505588</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Update of Reference Count (CVE-2026-23414)]]></title>
            <link>https://www.tenable.com/plugins/ot/505587</link>
            <guid>https://www.tenable.com/plugins/ot/505587</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505587 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505587">https://www.tenable.com/plugins/ot/505587</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Heap-based Buffer Overflow (CVE-2026-5450)]]></title>
            <link>https://www.tenable.com/plugins/ot/505586</link>
            <guid>https://www.tenable.com/plugins/ot/505586</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505586 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505586">https://www.tenable.com/plugins/ot/505586</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Access of Uninitialized Pointer (CVE-2026-43026)]]></title>
            <link>https://www.tenable.com/plugins/ot/505585</link>
            <guid>https://www.tenable.com/plugins/ot/505585</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505585 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505585">https://www.tenable.com/plugins/ot/505585</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Out-of-bounds Read (CVE-2026-23456)]]></title>
            <link>https://www.tenable.com/plugins/ot/505584</link>
            <guid>https://www.tenable.com/plugins/ot/505584</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505584 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505584">https://www.tenable.com/plugins/ot/505584</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Update of Reference Count (CVE-2026-23321)]]></title>
            <link>https://www.tenable.com/plugins/ot/505583</link>
            <guid>https://www.tenable.com/plugins/ot/505583</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505583 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505583">https://www.tenable.com/plugins/ot/505583</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Validation of Specified Index, Position, or Offset in Input (CVE-2026-31521)]]></title>
            <link>https://www.tenable.com/plugins/ot/505582</link>
            <guid>https://www.tenable.com/plugins/ot/505582</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505582 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505582">https://www.tenable.com/plugins/ot/505582</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Infinite Loop (CVE-2025-71266)]]></title>
            <link>https://www.tenable.com/plugins/ot/505581</link>
            <guid>https://www.tenable.com/plugins/ot/505581</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505581 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505581">https://www.tenable.com/plugins/ot/505581</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Reachable Assertion (CVE-2026-4046)]]></title>
            <link>https://www.tenable.com/plugins/ot/505580</link>
            <guid>https://www.tenable.com/plugins/ot/505580</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505580 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505580">https://www.tenable.com/plugins/ot/505580</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2025-37945)]]></title>
            <link>https://www.tenable.com/plugins/ot/505579</link>
            <guid>https://www.tenable.com/plugins/ot/505579</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505579 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505579">https://www.tenable.com/plugins/ot/505579</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Infinite Loop (CVE-2025-71267)]]></title>
            <link>https://www.tenable.com/plugins/ot/505578</link>
            <guid>https://www.tenable.com/plugins/ot/505578</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505578 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505578">https://www.tenable.com/plugins/ot/505578</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31503)]]></title>
            <link>https://www.tenable.com/plugins/ot/505577</link>
            <guid>https://www.tenable.com/plugins/ot/505577</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505577 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505577">https://www.tenable.com/plugins/ot/505577</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31628)]]></title>
            <link>https://www.tenable.com/plugins/ot/505576</link>
            <guid>https://www.tenable.com/plugins/ot/505576</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505576 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505576">https://www.tenable.com/plugins/ot/505576</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-46174)]]></title>
            <link>https://www.tenable.com/plugins/ot/505575</link>
            <guid>https://www.tenable.com/plugins/ot/505575</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505575 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505575">https://www.tenable.com/plugins/ot/505575</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-23450)]]></title>
            <link>https://www.tenable.com/plugins/ot/505574</link>
            <guid>https://www.tenable.com/plugins/ot/505574</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505574 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505574">https://www.tenable.com/plugins/ot/505574</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Untrusted Pointer Dereference (CVE-2026-31411)]]></title>
            <link>https://www.tenable.com/plugins/ot/505573</link>
            <guid>https://www.tenable.com/plugins/ot/505573</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505573 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505573">https://www.tenable.com/plugins/ot/505573</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-31441)]]></title>
            <link>https://www.tenable.com/plugins/ot/505572</link>
            <guid>https://www.tenable.com/plugins/ot/505572</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505572 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505572">https://www.tenable.com/plugins/ot/505572</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-23439)]]></title>
            <link>https://www.tenable.com/plugins/ot/505571</link>
            <guid>https://www.tenable.com/plugins/ot/505571</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505571 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505571">https://www.tenable.com/plugins/ot/505571</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Input Validation (CVE-2026-43011)]]></title>
            <link>https://www.tenable.com/plugins/ot/505570</link>
            <guid>https://www.tenable.com/plugins/ot/505570</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505570 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505570">https://www.tenable.com/plugins/ot/505570</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Validation of Specified Index, Position, or Offset in Input (CVE-2026-23204)]]></title>
            <link>https://www.tenable.com/plugins/ot/505569</link>
            <guid>https://www.tenable.com/plugins/ot/505569</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505569 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505569">https://www.tenable.com/plugins/ot/505569</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Improper Null Termination (CVE-2026-43028)]]></title>
            <link>https://www.tenable.com/plugins/ot/505568</link>
            <guid>https://www.tenable.com/plugins/ot/505568</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505568 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505568">https://www.tenable.com/plugins/ot/505568</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Expired Pointer Dereference (CVE-2026-23351)]]></title>
            <link>https://www.tenable.com/plugins/ot/505567</link>
            <guid>https://www.tenable.com/plugins/ot/505567</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505567 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505567">https://www.tenable.com/plugins/ot/505567</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP NULL Pointer Dereference (CVE-2026-23398)]]></title>
            <link>https://www.tenable.com/plugins/ot/505566</link>
            <guid>https://www.tenable.com/plugins/ot/505566</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505566 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505566">https://www.tenable.com/plugins/ot/505566</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Incorrect Calculation of Buffer Size (CVE-2026-31515)]]></title>
            <link>https://www.tenable.com/plugins/ot/505565</link>
            <guid>https://www.tenable.com/plugins/ot/505565</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505565 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505565">https://www.tenable.com/plugins/ot/505565</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 CPU 1518 MFP Inefficient Algorithmic Complexity (CVE-2026-45186)]]></title>
            <link>https://www.tenable.com/plugins/ot/505564</link>
            <guid>https://www.tenable.com/plugins/ot/505564</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505564 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505564">https://www.tenable.com/plugins/ot/505564</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Printers Improper Authentication (CVE-2024-12510)]]></title>
            <link>https://www.tenable.com/plugins/ot/505563</link>
            <guid>https://www.tenable.com/plugins/ot/505563</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505563 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>If LDAP settings are accessed, authentication could be redirected to another server, potentially exposing credentials. This requires admin access and an active LDAP setup.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505563">https://www.tenable.com/plugins/ot/505563</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Printers Improper Neutralization of Special Elements used in an OS Command (CVE-2024-6333)]]></title>
            <link>https://www.tenable.com/plugins/ot/505562</link>
            <guid>https://www.tenable.com/plugins/ot/505562</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505562 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Authenticated Remote Code Execution in Altalink, Versalink & WorkCentre Products.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505562">https://www.tenable.com/plugins/ot/505562</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Printers Loop with Unreachable Exit Condition (CVE-2022-23968)]]></title>
            <link>https://www.tenable.com/plugins/ot/505561</link>
            <guid>https://www.tenable.com/plugins/ot/505561</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505561 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Xerox VersaLink devices on specific versions of firmware before 2022-01-26 allow remote attackers to brick the device via a crafted TIFF file in an unauthenticated HTTP POST request. There is a permanent denial of service because image parsing causes a reboot, but image parsing is restarted as soon as the boot process finishes.<br /></span><span>However, this boot loop can be resolved by a field technician. The TIFF file must have an incomplete Image Directory. Affected firmware versions include xx.42.01 and xx.50.61. NOTE: the 2022-01-24 NeoSmart article included believed to affect all previous and later versions as of the date of this posting but a 2022-01-26 vendor statement reports the latest versions of firmware are not vulnerable to this issue.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505561">https://www.tenable.com/plugins/ot/505561</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Printers Clone File Command Injection (CVE-2021-28673)]]></title>
            <link>https://www.tenable.com/plugins/ot/505560</link>
            <guid>https://www.tenable.com/plugins/ot/505560</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505560 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Xerox Phaser 6510 before 64.61.23 and 64.59.11 (Bridge), WorkCentre 6515 before 65.61.23 and 65.59.11 (Bridge), VersaLink B400 before 37.61.23 and 37.59.01 (Bridge), B405 before 38.61.23 and 38.59.01 (Bridge), B600/B610 before 32.61.23 and 32.59.01 (Bridge), B605/B615 before 33.61.23 and 33.59.01 (Bridge), B7025/30/35 before 58.61.23 and 58.59.11 (Bridge), C400 before 67.61.23 and 67.59.01 (Bridge), C405 before 68.61.23 and 68.59.01 (Bridge), C500/C600 before 61.61.23 and 61.59.01 (Bridge), C505/C605 before 62.61.23 and 62.59.11 (Bridge), C7000 before 56.61.23 and 56.59.01 (Bridge), C7020/25/30 before 57.61.23 and 57.59.01 (Bridge), C8000/C9000 before 70.61.23 and 70.59.01 (Bridge), allows remote attackers with a weaponized clone file to execute arbitrary commands in the Web User Interface.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505560">https://www.tenable.com/plugins/ot/505560</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Printers Improper Authentication (CVE-2023-46327)]]></title>
            <link>https://www.tenable.com/plugins/ot/505559</link>
            <guid>https://www.tenable.com/plugins/ot/505559</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505559 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Multiple MFPs (multifunction printers) provided by FUJIFILM Business Innovation Corp. and Xerox Corporation provide a facility to export the contents of their Address Book with encrypted form, but the encryption strength is insufficient. With the knowledge of the encryption process and the encryption key, the information such as the server credentials may be obtained from the exported Address Book data. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505559">https://www.tenable.com/plugins/ot/505559</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Printers Remote Command Execution (CVE-2021-28671)]]></title>
            <link>https://www.tenable.com/plugins/ot/505558</link>
            <guid>https://www.tenable.com/plugins/ot/505558</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505558 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Xerox Phaser 6510 before 64.65.51 and 64.59.11 (Bridge), WorkCentre 6515 before 65.65.51 and 65.59.11 (Bridge), VersaLink B400 before 37.65.51 and 37.59.01 (Bridge), B405 before 38.65.51 and 38.59.01 (Bridge), B600/B610 before 32.65.51 and 32.59.01 (Bridge), B605/B615 before 33.65.51 and 33.59.01 (Bridge), B7025/30/35 before 58.65.51 and 58.59.11 (Bridge), C400 before 67.65.51 and 67.59.01 (Bridge), C405 before 68.65.51 and 68.59.01 (Bridge), C500/C600 before 61.65.51 and 61.59.01 (Bridge), C505/C605 before 62.65.51 and 62.59.01 (Bridge), C7000 before 56.65.51 and 56.59.01 (Bridge), C7020/25/30 before 57.65.51 and 57.59.01 (Bridge), C8000/C9000 before 70.65.51 and 70.59.01 (Bridge), C8000W before 72.65.51 have a remote Command Execution vulnerability in the Web User Interface that allows remote attackers with a weaponized clone file to execute arbitrary commands.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505558">https://www.tenable.com/plugins/ot/505558</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox WorkCentre 3550 Cleartext Storage of Sensitive Information (CVE-2022-45897)]]></title>
            <link>https://www.tenable.com/plugins/ot/505557</link>
            <guid>https://www.tenable.com/plugins/ot/505557</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505557 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>On Xerox WorkCentre 3550 25.003.03.000 devices, an authenticated attacker can view the SMB server settings and can obtain the stored cleartext credentials associated with those settings.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505557">https://www.tenable.com/plugins/ot/505557</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Phaser 4622 Out-of-bounds Write (CVE-2021-37354)]]></title>
            <link>https://www.tenable.com/plugins/ot/505556</link>
            <guid>https://www.tenable.com/plugins/ot/505556</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505556 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Xerox Phaser 4622 v35.013.01.000 was discovered to contain a buffer overflow in the function sub_3226AC via the TIMEZONE variable. This vulnerability allows attackers to cause a Denial of Service (DoS) via crafted overflow data.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505556">https://www.tenable.com/plugins/ot/505556</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox AltaLink Missing Authorization (CVE-2021-28669)]]></title>
            <link>https://www.tenable.com/plugins/ot/505555</link>
            <guid>https://www.tenable.com/plugins/ot/505555</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505555 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.23120 and C8070 before 103.003.020.23120 provide the ability to set configuration attributes without administrative rights.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505555">https://www.tenable.com/plugins/ot/505555</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox AltaLink Improper Neutralization of Special Elements used in an SQL Command (CVE-2021-28668)]]></title>
            <link>https://www.tenable.com/plugins/ot/505554</link>
            <guid>https://www.tenable.com/plugins/ot/505554</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505554 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.23120 and C8070 before 103.003.020.23120 has several SQL injection vulnerabilities.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505554">https://www.tenable.com/plugins/ot/505554</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Printers Buffer Copy without Checking Size of Input (CVE-2021-28672)]]></title>
            <link>https://www.tenable.com/plugins/ot/505553</link>
            <guid>https://www.tenable.com/plugins/ot/505553</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505553 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Xerox Phaser 6510 before 64.65.51 and 64.59.11 (Bridge), WorkCentre 6515 before 65.65.51 and 65.59.11 (Bridge), VersaLink B400 before 37.65.51 and 37.59.01 (Bridge), B405 before 38.65.51 and 38.59.01 (Bridge), B600/B610 before 32.65.51 and 32.59.01 (Bridge), B605/B615 before 33.65.51 and 33.59.01 (Bridge), B7025/30/35 before 58.65.51 and 58.59.11 (Bridge), C400 before 67.65.51 and 67.59.01 (Bridge), C405 before 68.65.51 and 68.59.01 (Bridge), C500/C600 before 61.65.51 and 61.59.01 (Bridge), C505/C605 before 62.65.51 and 62.59.01 (Bridge), C7000 before 56.65.51 and 56.59.01 (Bridge), C7020/25/30 before 57.65.51 and 57.59.01 (Bridge), C8000/C9000 before 70.65.51 and 70.59.01 (Bridge), C8000W before 72.65.51 allows remote attackers to execute arbitrary code through a buffer overflow in Web page parameter handling.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505553">https://www.tenable.com/plugins/ot/505553</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox AltaLink Abuse Scan Feature to Delete Files (CVE-2021-28670)]]></title>
            <link>https://www.tenable.com/plugins/ot/505552</link>
            <guid>https://www.tenable.com/plugins/ot/505552</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505552 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Xerox AltaLink B8045/B8090 before 103.008.030.32000, C8030/C8035 before 103.001.030.32000, C8045/C8055 before 103.002.030.32000 and C8070 before 103.003.030.32000 allow unauthorized users, by leveraging the Scan To Mailbox feature, to delete arbitrary files from the disk.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505552">https://www.tenable.com/plugins/ot/505552</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Xerox Printers Missing Authentication for Critical Function (CVE-2024-12511)]]></title>
            <link>https://www.tenable.com/plugins/ot/505551</link>
            <guid>https://www.tenable.com/plugins/ot/505551</guid>
            <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505551 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>With address book access, SMB/FTP settings could be modified, redirecting scans and possibly capturing credentials.<br /></span><span>This requires enabled scan functions and printer access.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505551">https://www.tenable.com/plugins/ot/505551</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco ASA/FTD Authentication Bypass Using an Alternate Path or Channel (CVE-2023-20269)]]></title>
            <link>https://www.tenable.com/plugins/ot/505550</link>
            <guid>https://www.tenable.com/plugins/ot/505550</guid>
            <pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505550 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a brute force attack in an attempt to identify valid username and password combinations or an authenticated, remote attacker to establish a clientless SSL VPN session with an unauthorized user.<br /></span><span>This vulnerability is due to improper separation of authentication, authorization, and accounting (AAA) between the remote access VPN feature and the HTTPS management and site-to-site VPN features. An attacker could exploit this vulnerability by specifying a default connection profile/tunnel group while conducting a brute force attack or while establishing a clientless SSL VPN session using valid credentials. A successful exploit could allow the attacker to achieve one or both of the following: Identify valid credentials that could then be used to establish an unauthorized remote access VPN session.<br /></span><span>Establish a clientless SSL VPN session (only when running Cisco ASA Software Release 9.16 or earlier).<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505550">https://www.tenable.com/plugins/ot/505550</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco ASA/FTD Web Services Infinite Loop (CVE-2024-20353)]]></title>
            <link>https://www.tenable.com/plugins/ot/505549</link>
            <guid>https://www.tenable.com/plugins/ot/505549</guid>
            <pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505549 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in the management and VPN web servers for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to incomplete error checking when parsing an HTTP header. An attacker could exploit this vulnerability by sending a crafted HTTP request to a targeted web server on a device. A successful exploit could allow the attacker to cause a DoS condition when the device reloads. Note: This vulnerability was publicly disclosed in conjunction with the ArcaneDoor state-sponsored espionage campaign that targeted perimeter network devices.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505549">https://www.tenable.com/plugins/ot/505549</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco ASA IKEv1/IKEv2 Buffer Overflow (CVE-2016-1287)]]></title>
            <link>https://www.tenable.com/plugins/ot/505548</link>
            <guid>https://www.tenable.com/plugins/ot/505548</guid>
            <pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505548 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in the Internet Key Exchange (IKE) version 1 (v1) and IKE version 2 (v2) code of Cisco ASA Software could allow an unauthenticated, remote attacker to cause a reload of the affected system or to remotely execute code. The vulnerability is due to a buffer overflow in the affected code area. An attacker could exploit this vulnerability by sending crafted UDP packets to the affected system. An attacker could exploit this vulnerability by sending crafted UDP packets to the affected system. Only traffic directed to the affected system can be used to exploit this vulnerability. This vulnerability affects systems configured in routed and transparent firewall mode and in single or multiple context mode. This vulnerability can be triggered by IPv4 and IPv6 traffic. A valid IKE phase 1 SA is not required to exploit this vulnerability.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505548">https://www.tenable.com/plugins/ot/505548</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco ASA/FTD Observable Discrepancy (CVE-2022-20866)]]></title>
            <link>https://www.tenable.com/plugins/ot/505547</link>
            <guid>https://www.tenable.com/plugins/ot/505547</guid>
            <pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505547 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in the handling of RSA keys on devices running Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to retrieve an RSA private key. This vulnerability is due to a logic error when the RSA key is stored in memory on a hardware platform that performs hardware-based cryptography. An attacker could exploit this vulnerability by using a Lenstra side-channel attack against the targeted device. A successful exploit could allow the attacker to retrieve the RSA private key. The following conditions may be observed on an affected device: This vulnerability will apply to approximately 5 percent of the RSA keys on a device that uses hardware-based cryptography, which is expected to be a small number of keys. An attacker must obtain a significant amount of ciphertext that was encrypted using the targeted RSA key before the attack can be successful.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505547">https://www.tenable.com/plugins/ot/505547</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco ASA/FTD WebVPN Double Free (CVE-2018-0101)]]></title>
            <link>https://www.tenable.com/plugins/ot/505546</link>
            <guid>https://www.tenable.com/plugins/ot/505546</guid>
            <pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505546 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause a reload of the affected system or to remotely execute code. The vulnerability is due to an attempt to double free a region of memory when the webvpn feature is enabled on the Cisco ASA device. An attacker could exploit this vulnerability by sending multiple, crafted XML packets to a webvpn-configured interface on the affected system. An exploit could allow the attacker to execute arbitrary code and obtain full control of the system, or cause a reload of the affected device. This vulnerability affects Cisco ASA Software that is running on the following Cisco products: 3000 Series Industrial Security Appliance (ISA), ASA 5500 Series Adaptive Security Appliances, ASA 5500-X Series Next-Generation Firewalls, ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers, ASA 1000V Cloud Firewall, Adaptive Security Virtual Appliance (ASAv), Firepower 2100 Series Security Appliance, Firepower 4110 Security Appliance, Firepower 9300 ASA Security Module, FTD Software (Version 6.2.2 only).<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505546">https://www.tenable.com/plugins/ot/505546</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco ASA/FTD Persistent Local Code Execution (CVE-2024-20359)]]></title>
            <link>https://www.tenable.com/plugins/ot/505545</link>
            <guid>https://www.tenable.com/plugins/ot/505545</guid>
            <pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505545 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in a legacy capability that allowed for the preloading of VPN clients and plugins and that has been available in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary code with root-level privileges.<br /></span><span>Administrator-level privileges are required to exploit this vulnerability. This vulnerability is due to improper validation of a file when it is read from system flash memory. An attacker could exploit this vulnerability by copying a crafted file to the disk0:<br /></span><span>file system of an affected device. A successful exploit could allow the attacker to execute arbitrary code on the affected device after the next reload of the device, which could alter system behavior. This vulnerability affects the confidentiality, integrity, and availability of the affected device. Note: This vulnerability was publicly disclosed in conjunction with the ArcaneDoor state-sponsored espionage campaign that targeted perimeter network devices.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505545">https://www.tenable.com/plugins/ot/505545</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Cisco ASA/FTD WebVPN/AnyConnect Improper Input Validation (CVE-2020-3452)]]></title>
            <link>https://www.tenable.com/plugins/ot/505544</link>
            <guid>https://www.tenable.com/plugins/ot/505544</guid>
            <pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505544 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks and read sensitive files on a targeted system. The vulnerability is due to a lack of proper input validation of URLs in HTTP requests processed by an affected device.<br /></span><span>An attacker could exploit this vulnerability by sending a crafted HTTP request containing directory traversal character sequences to an affected device. A successful exploit could allow the attacker to view arbitrary files within the web services file system on the targeted device. The web services file system is enabled when the affected device is configured with either WebVPN or AnyConnect features. This vulnerability cannot be used to obtain access to ASA or FTD system files or underlying operating system (OS) files.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505544">https://www.tenable.com/plugins/ot/505544</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom with PAN-OS Improper Check for Unusual or Exceptional Conditions (CVE-2026-0262)]]></title>
            <link>https://www.tenable.com/plugins/ot/505543</link>
            <guid>https://www.tenable.com/plugins/ot/505543</guid>
            <pubDate>Fri, 17 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505543 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Multiple denial of service vulnerabilities in Palo Alto Networks PAN- OS software allow an unauthenticated attacker with network access to cause a denial of service (DoS) condition by sending specially crafted network traffic. Panorama and Cloud NGFW are not impacted by these vulnerabilities.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505543">https://www.tenable.com/plugins/ot/505543</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SCALANCE, RUGGEDCOM, and SIPLUS Out-of-bounds Write (CVE-2025-15467)]]></title>
            <link>https://www.tenable.com/plugins/ot/505542</link>
            <guid>https://www.tenable.com/plugins/ot/505542</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505542 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Issue summary: Parsing CMS AuthEnvelopedData message with maliciously crafted AEAD parameters can trigger a stack buffer overflow.  Impact summary: A stack buffer overflow may lead to a crash, causing Denial of Service, or potentially remote code execution.    When parsing CMS AuthEnvelopedData structures that use AEAD ciphers such as  AES-GCM, the IV (Initialization Vector) encoded in the ASN.1 parameters is copied into a fixed-size stack buffer without verifying that its length fits  the destination. An attacker can supply a crafted CMS message with an  oversized IV, causing a stack-based out-of-bounds write before any  authentication or tag verification occurs.<br /></span><span>Applications and services that parse untrusted CMS or PKCS#7 content using  AEAD ciphers (e.g., S/MIME AuthEnvelopedData with AES-GCM) are vulnerable.  Because the overflow occurs prior to authentication, no valid key material  is required to trigger it. While exploitability to remote code execution  depends on platform and toolchain mitigations, the stack-based write  primitive represents a severe risk.    The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this  issue, as the CMS implementation is outside the OpenSSL FIPS module boundary.    OpenSSL 3.6, 3.5, 3.4, 3.3 and 3.0 are vulnerable to this issue.    OpenSSL 1.1.1 and 1.0.2 are not affected by this issue.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505542">https://www.tenable.com/plugins/ot/505542</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIPROTEC 5 Using DIGSI5 Protocol Unrestricted Upload of File with Dangerous Type (CVE-2025-40808)]]></title>
            <link>https://www.tenable.com/plugins/ot/505541</link>
            <guid>https://www.tenable.com/plugins/ot/505541</guid>
            <pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505541 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The affected application allows authenticated users to upload arbitrary files using DIGSI 5 protocol. This could allow an attacker to upload malicious configuration files, that could cause denial of service condition and potentially lead to code execution.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505541">https://www.tenable.com/plugins/ot/505541</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7 PLC Web Server Improper Neutralization of Input During Web Page Generation (CVE-2026-25789)]]></title>
            <link>https://www.tenable.com/plugins/ot/505540</link>
            <guid>https://www.tenable.com/plugins/ot/505540</guid>
            <pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505540 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Affected devices do not properly validate and sanitize filenames on the Firmware Update page. This could allow a remote attacker to social engineer the user into selecting a modified firmware file.<br /></span><span>This would result in malicious JavaScript execution in the context of the authenticated user's session without requiring the file to be uploaded, potentially leading to session hijacking.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505540">https://www.tenable.com/plugins/ot/505540</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7 PLC Web Server Improper Neutralization of Input During Web Page Generation (CVE-2026-25786)]]></title>
            <link>https://www.tenable.com/plugins/ot/505539</link>
            <guid>https://www.tenable.com/plugins/ot/505539</guid>
            <pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505539 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Affected devices do not properly validate and sanitize PLC/station name rendered on the 'communication' parameters page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA project into the product, to inject malicious scripts into the page. If a benign user with appropriate rights accesses the 'communication' parameters page, the malicious code would be executed in the scope of their web session.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505539">https://www.tenable.com/plugins/ot/505539</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SENTRON 7KT PAC1261 HTTP Request/Response Smuggling (CVE-2025-22871)]]></title>
            <link>https://www.tenable.com/plugins/ot/505538</link>
            <guid>https://www.tenable.com/plugins/ot/505538</guid>
            <pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505538 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>The Go net/http package incorrectly treats a bare line feed (LF) as a valid line terminator in chunked transfer data. This flaw can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as a line terminator.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade SENTRON 7KT PAC1261 Data Manager to V2.1.0 or later.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505538">https://www.tenable.com/plugins/ot/505538</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7 PLC Web Server Improper Neutralization of Input During Web Page Generation (CVE-2026-25787)]]></title>
            <link>https://www.tenable.com/plugins/ot/505537</link>
            <guid>https://www.tenable.com/plugins/ot/505537</guid>
            <pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505537 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the 'Motion Control Diagnostics' page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA project into the product, to inject malicious scripts into the page. If a benign user with appropriate rights accesses the 'Motion Control Diagnostics' parameters page, the malicious code would be executed in the scope of their web session.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505537">https://www.tenable.com/plugins/ot/505537</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Validation of Syntactic Correctness of Input (CVE-2024-6173)]]></title>
            <link>https://www.tenable.com/plugins/ot/505536</link>
            <guid>https://www.tenable.com/plugins/ot/505536</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505536 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that a Guard Tour VAPIX API parameter accepted arbitrary values, which could let an attacker block access to the guard tour configuration page in the web interface of the Axis device. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 11.11.73 on the active track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505536">https://www.tenable.com/plugins/ot/505536</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Cleartext Transmission of Sensitive Information (CVE-2024-0066)]]></title>
            <link>https://www.tenable.com/plugins/ot/505535</link>
            <guid>https://www.tenable.com/plugins/ot/505535</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505535 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that a O3C feature may expose sensitive traffic between the client (Axis device) and (O3C) server. This issue does not apply if O3C is not used. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 11.10.61 on the active track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505535">https://www.tenable.com/plugins/ot/505535</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Neutralization of Wildcards or Matching Symbols (CVE-2024-6509)]]></title>
            <link>https://www.tenable.com/plugins/ot/505534</link>
            <guid>https://www.tenable.com/plugins/ot/505534</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505534 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that the VAPIX API alwaysmulti.cgi was vulnerable for file globbing which could lead to resource exhaustion of the Axis device. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 11.11.93 on the active track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505534">https://www.tenable.com/plugins/ot/505534</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Validation of Syntactic Correctness of Input (CVE-2024-8772)]]></title>
            <link>https://www.tenable.com/plugins/ot/505533</link>
            <guid>https://www.tenable.com/plugins/ot/505533</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505533 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that the VAPIX API managedoverlayimages.cgi was vulnerable to a race condition attack enabling an attacker to block access to the overlay configuration page in the web interface of the Axis device.<br /></span><span>Exploitation requires prior authentication with an operator- or administrator-privileged service account. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 12.1.28 on the active track and 11.11.118 on the 2024 LTS track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505533">https://www.tenable.com/plugins/ot/505533</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Restriction of Names for Files and Other Resources (CVE-2024-47260)]]></title>
            <link>https://www.tenable.com/plugins/ot/505532</link>
            <guid>https://www.tenable.com/plugins/ot/505532</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505532 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Lasse Trind, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API mediaclip.cgi did not have a sufficient input validation allowing for uploading more audio clips then designed resulting in the Axis device running out of memory. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 12.3.1 on the active track and 11.11.135 on the 2024 LTS track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505532">https://www.tenable.com/plugins/ot/505532</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Neutralization of Wildcards or Matching Symbols (CVE-2024-0054)]]></title>
            <link>https://www.tenable.com/plugins/ot/505531</link>
            <guid>https://www.tenable.com/plugins/ot/505531</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505531 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that the VAPIX APIs local_list.cgi, create_overlay.cgi and irissetup.cgi were vulnerable for file globbing which could lead to a resource exhaustion attack. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 11.9.53 on the active track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505531">https://www.tenable.com/plugins/ot/505531</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Path Traversal (CVE-2024-0067)]]></title>
            <link>https://www.tenable.com/plugins/ot/505530</link>
            <guid>https://www.tenable.com/plugins/ot/505530</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505530 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that the VAPIX API ledlimit.cgi was vulnerable for path traversal attacks allowing to list folder/file names on the local file system of the Axis device. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 11.11.73 on the active track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505530">https://www.tenable.com/plugins/ot/505530</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Validation of Specified Type of Input (CVE-2024-47262)]]></title>
            <link>https://www.tenable.com/plugins/ot/505529</link>
            <guid>https://www.tenable.com/plugins/ot/505529</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505529 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Dzmitry Lukyanenka, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API param.cgi was vulnerable to a race condition attack allowing for an attacker to block access to the web interface of the Axis device. Axis has released patched AXIS OS versions for this flaw. Endpoints not using param.cgi are not affected.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 12.3.4 on the active track and 11.11.127 on the 2024 LTS track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505529">https://www.tenable.com/plugins/ot/505529</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Validation of Specified Type of Input (CVE-2024-47261)]]></title>
            <link>https://www.tenable.com/plugins/ot/505528</link>
            <guid>https://www.tenable.com/plugins/ot/505528</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505528 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that the VAPIX API uploadoverlayimage.cgi did not have sufficient input validation to allow an attacker to upload files to block access to create image overlays in the web interface of the Axis device. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 12.3.56 on the active track and 11.11.141 on the 2024 LTS track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505528">https://www.tenable.com/plugins/ot/505528</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Neutralization of Wildcards or Matching Symbols (CVE-2024-0055)]]></title>
            <link>https://www.tenable.com/plugins/ot/505527</link>
            <guid>https://www.tenable.com/plugins/ot/505527</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505527 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that the VAPIX APIs mediaclip.cgi and playclip.cgi were vulnerable for file globbing which could lead to a resource exhaustion attack. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 11.9.53 on the active track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505527">https://www.tenable.com/plugins/ot/505527</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Axis Communications AXIS OS Improper Validation of Syntactic Correctness of Input (CVE-2024-8160)]]></title>
            <link>https://www.tenable.com/plugins/ot/505526</link>
            <guid>https://www.tenable.com/plugins/ot/505526</guid>
            <pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505526 with Low Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A researcher in the AXIS OS Bug Bounty Program has found that the VAPIX API ftptest.cgi did not have a sufficient input validation allowing for a possible command injection to transfer files to/from the Axis device. This flaw can only be exploited after authenticating with an administrator-privileged service account. Axis has released patched AXIS OS versions for this flaw.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade AXIS OS according to the vendor advisory (fixed in 12.1.21 on the active track and 11.11.116 on the 2024 LTS track, among other tracks).<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505526">https://www.tenable.com/plugins/ot/505526</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Use of GET Request Method With Sensitive Query Strings (CVE-2025-3943)]]></title>
            <link>https://www.tenable.com/plugins/ot/505525</link>
            <guid>https://www.tenable.com/plugins/ot/505525</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505525 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Use of GET Request Method With Sensitive Query Strings vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Parameter Injection. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505525">https://www.tenable.com/plugins/ot/505525</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Incorrect Permission Assignment for Critical Resource (CVE-2025-3944)]]></title>
            <link>https://www.tenable.com/plugins/ot/505524</link>
            <guid>https://www.tenable.com/plugins/ot/505524</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505524 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Incorrect Permission Assignment for Critical Resource vulnerability in Tridium Niagara Framework on QNX, Tridium Niagara Enterprise Security on QNX allows File Manipulation. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505524">https://www.tenable.com/plugins/ot/505524</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Improper Encoding or Escaping of Output (CVE-2025-3942)]]></title>
            <link>https://www.tenable.com/plugins/ot/505523</link>
            <guid>https://www.tenable.com/plugins/ot/505523</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505523 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Improper Output Neutralization for Logs vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Input Data Manipulation. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505523">https://www.tenable.com/plugins/ot/505523</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Use of Incorrectly-Resolved Name or Reference (CVE-2025-3941)]]></title>
            <link>https://www.tenable.com/plugins/ot/505522</link>
            <guid>https://www.tenable.com/plugins/ot/505522</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505522 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Improper Handling of Windows ::DATA Alternate Data Stream vulnerability in Tridium Niagara Framework on Windows, Tridium Niagara Enterprise Security on Windows allows Input Data Manipulation. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505522">https://www.tenable.com/plugins/ot/505522</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Use of a Broken or Risky Cryptographic Algorithm (CVE-2025-3938)]]></title>
            <link>https://www.tenable.com/plugins/ot/505521</link>
            <guid>https://www.tenable.com/plugins/ot/505521</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505521 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Missing Cryptographic Step vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysis. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505521">https://www.tenable.com/plugins/ot/505521</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Use of Password Hash With Insufficient Computational Effort (CVE-2025-3937)]]></title>
            <link>https://www.tenable.com/plugins/ot/505520</link>
            <guid>https://www.tenable.com/plugins/ot/505520</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505520 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Use of Password Hash With Insufficient Computational Effort vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysis. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505520">https://www.tenable.com/plugins/ot/505520</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Observable Discrepancy (CVE-2025-3939)]]></title>
            <link>https://www.tenable.com/plugins/ot/505519</link>
            <guid>https://www.tenable.com/plugins/ot/505519</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505519 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Observable Response Discrepancy vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysis. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505519">https://www.tenable.com/plugins/ot/505519</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Incorrect Permission Assignment for Critical Resource (CVE-2025-3936)]]></title>
            <link>https://www.tenable.com/plugins/ot/505518</link>
            <guid>https://www.tenable.com/plugins/ot/505518</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505518 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Incorrect Permission Assignment for Critical Resource vulnerability in Tridium Niagara Framework on Windows, Tridium Niagara Enterprise Security on Windows allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Niagara Framework:<br /></span><span>before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505518">https://www.tenable.com/plugins/ot/505518</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Argument Injection (CVE-2025-3945)]]></title>
            <link>https://www.tenable.com/plugins/ot/505517</link>
            <guid>https://www.tenable.com/plugins/ot/505517</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505517 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Tridium Niagara Framework on QNX, Tridium Niagara Enterprise Security on QNX allows Command Delimiters. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505517">https://www.tenable.com/plugins/ot/505517</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Tridium Niagara Improper Use of Validation Framework (CVE-2025-3940)]]></title>
            <link>https://www.tenable.com/plugins/ot/505516</link>
            <guid>https://www.tenable.com/plugins/ot/505516</guid>
            <pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505516 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Improper Use of Validation Framework vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Input Data Manipulation. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Niagara Framework and Niagara Enterprise Security version 4.14u2 or later. Updates for 4.10 and 4.15 will be released shortly.<br /></span><span>Contact Tridium support at support@tridium.com for assistance.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505516">https://www.tenable.com/plugins/ot/505516</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Schneider Electric Modicon M241, M251, and M262 Improper Resource Shutdown or Release (CVE-2025-13901)]]></title>
            <link>https://www.tenable.com/plugins/ot/505515</link>
            <guid>https://www.tenable.com/plugins/ot/505515</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505515 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-404 Improper Resource Shutdown or Release vulnerability exists that could cause partial Denial of Service on Machine Expert protocol when an unauthenticated attacker sends malicious payload to occupy active communication channels.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505515">https://www.tenable.com/plugins/ot/505515</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Cross-site Scripting (CVE-2024-5540)]]></title>
            <link>https://www.tenable.com/plugins/ot/505514</link>
            <guid>https://www.tenable.com/plugins/ot/505514</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505514 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products in versions older than 8.0. Untrusted data is included in web pages without proper validation, allowing attackers to execute malicious scripts in the user's browser.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.0 or later. Versions 7.0, 6.5, and 6.1 are no longer supported.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505514">https://www.tenable.com/plugins/ot/505514</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Vertiv Liebert SiteScan Cross-site Scripting (CVE-2024-5540)]]></title>
            <link>https://www.tenable.com/plugins/ot/505513</link>
            <guid>https://www.tenable.com/plugins/ot/505513</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505513 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products in versions older than 8.0. Untrusted data is included in web pages without proper validation, allowing attackers to execute malicious scripts in the user's browser.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.0 or later. Versions 7.0, 6.5, and 6.1 are no longer supported.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505513">https://www.tenable.com/plugins/ot/505513</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Storing Passwords in a Recoverable Format (CVE-2025-14295)]]></title>
            <link>https://www.tenable.com/plugins/ot/505512</link>
            <guid>https://www.tenable.com/plugins/ot/505512</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505512 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-257 Storing Passwords in a Recoverable Format vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. An attacker with elevated access can retrieve passwords stored in a recoverable format, potentially compromising credentials and neighboring systems.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to the latest supported version of Automated Logic WebCTRL or Carrier i-Vu. A cumulative patch for versions 8.5 and 9.0 is being made available. WebCTRL 10 and i-Vu 10 are not vulnerable.<br /></span><span>Contact your account representative or authorized dealer for details.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505512">https://www.tenable.com/plugins/ot/505512</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Carrier Corporation i-VU Improper Validation of Array Index (CVE-2025-0657)]]></title>
            <link>https://www.tenable.com/plugins/ot/505511</link>
            <guid>https://www.tenable.com/plugins/ot/505511</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505511 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-129 Improper Validation of Array Index vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. Software uses an array index that has not been properly validated to ensure it falls within valid array bounds. This can result in out-of-bounds access, and if the resulting exception is not handled (CWE-248 Uncaught Exception), leads to cessation of an essential process within the affected device.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.5, 9.0, or later. Support for versions 8.0, 7.0, 6.5, 6.1, and 6.0 has expired.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505511">https://www.tenable.com/plugins/ot/505511</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Improper Validation of Array Index (CVE-2025-0657)]]></title>
            <link>https://www.tenable.com/plugins/ot/505510</link>
            <guid>https://www.tenable.com/plugins/ot/505510</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505510 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-129 Improper Validation of Array Index vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. Software uses an array index that has not been properly validated to ensure it falls within valid array bounds. This can result in out-of-bounds access, and if the resulting exception is not handled (CWE-248 Uncaught Exception), leads to cessation of an essential process within the affected device.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.5, 9.0, or later. Support for versions 8.0, 7.0, 6.5, 6.1, and 6.0 has expired.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505510">https://www.tenable.com/plugins/ot/505510</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Vertiv Liebert SiteScan Improper Validation of Array Index (CVE-2025-0657)]]></title>
            <link>https://www.tenable.com/plugins/ot/505509</link>
            <guid>https://www.tenable.com/plugins/ot/505509</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505509 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-129 Improper Validation of Array Index vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. Software uses an array index that has not been properly validated to ensure it falls within valid array bounds. This can result in out-of-bounds access, and if the resulting exception is not handled (CWE-248 Uncaught Exception), leads to cessation of an essential process within the affected device.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.5, 9.0, or later. Support for versions 8.0, 7.0, 6.5, 6.1, and 6.0 has expired.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505509">https://www.tenable.com/plugins/ot/505509</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Carrier Corporation i-VU Incorrect Authorization (CVE-2024-5539)]]></title>
            <link>https://www.tenable.com/plugins/ot/505508</link>
            <guid>https://www.tenable.com/plugins/ot/505508</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505508 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-863 Incorrect Authorization vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products.<br /></span><span>The system fails to perform adequate authorization checks, allowing an actor to perform actions or access resources without proper entitlement, leading to unauthorized access to sensitive information or functionality.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.0 or later. Versions 7.0, 6.5, and 6.1 are no longer supported.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505508">https://www.tenable.com/plugins/ot/505508</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Vertiv Liebert SiteScan Incorrect Authorization (CVE-2024-5539)]]></title>
            <link>https://www.tenable.com/plugins/ot/505507</link>
            <guid>https://www.tenable.com/plugins/ot/505507</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505507 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-863 Incorrect Authorization vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products.<br /></span><span>The system fails to perform adequate authorization checks, allowing an actor to perform actions or access resources without proper entitlement, leading to unauthorized access to sensitive information or functionality.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.0 or later. Versions 7.0, 6.5, and 6.1 are no longer supported.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505507">https://www.tenable.com/plugins/ot/505507</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Carrier Corporation i-VU Cross-site Scripting (CVE-2024-5540)]]></title>
            <link>https://www.tenable.com/plugins/ot/505506</link>
            <guid>https://www.tenable.com/plugins/ot/505506</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505506 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products in versions older than 8.0. Untrusted data is included in web pages without proper validation, allowing attackers to execute malicious scripts in the user's browser.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.0 or later. Versions 7.0, 6.5, and 6.1 are no longer supported.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505506">https://www.tenable.com/plugins/ot/505506</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Premium Server Improper Neutralization of Input During Web Page Generation (CVE-2024-8528)]]></title>
            <link>https://www.tenable.com/plugins/ot/505505</link>
            <guid>https://www.tenable.com/plugins/ot/505505</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505505 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. User input is not properly sanitized, allowing injection of malicious scripts into web pages viewed by users.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Automated Logic has reported the following:<br /></span><span><br /></span><span>- Users are advised to upgrade to the latest available version. These vulnerabilities have been remediated in Web CTRL 9.0.<br /></span><span>- Web CTRL 7.0, Web CTRL 6.1, i-Vu 6.0 are out of support.<br /></span><span>- Additionally, Users are encouraged to follow Automated Logic's [Security Best Practices Checklists for Building Automation Systems (BAS)](https://www.automatedlogic.com/en/media/Security Best Practices for a WebCTRL v8.0 system-522_tcm702-168128.pdf) to ensure alignment with best practices installation guidelines.<br /></span><span><br /></span><span>For more information, visit Carrier's security advisories: https://www.corporate.carrier.com/product- security/advisories-resources/<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505505">https://www.tenable.com/plugins/ot/505505</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Premium Server Improper Neutralization of Input During Web Page Generation (CVE-2024-8528)]]></title>
            <link>https://www.tenable.com/plugins/ot/505504</link>
            <guid>https://www.tenable.com/plugins/ot/505504</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505504 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. User input is not properly sanitized, allowing injection of malicious scripts into web pages viewed by users.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Automated Logic has reported the following:<br /></span><span><br /></span><span>- Users are advised to upgrade to the latest available version. These vulnerabilities have been remediated in Web CTRL 9.0.<br /></span><span>- Web CTRL 7.0, Web CTRL 6.1, i-Vu 6.0 are out of support.<br /></span><span>- Additionally, Users are encouraged to follow Automated Logic's [Security Best Practices Checklists for Building Automation Systems (BAS)](https://www.automatedlogic.com/en/media/Security Best Practices for a WebCTRL v8.0 system-522_tcm702-168128.pdf) to ensure alignment with best practices installation guidelines.<br /></span><span><br /></span><span>For more information, visit Carrier's security advisories: https://www.corporate.carrier.com/product- security/advisories-resources/<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505504">https://www.tenable.com/plugins/ot/505504</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Carrier Corporation i-VU Storing Passwords in a Recoverable Format (CVE-2025-14295)]]></title>
            <link>https://www.tenable.com/plugins/ot/505503</link>
            <guid>https://www.tenable.com/plugins/ot/505503</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505503 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-257 Storing Passwords in a Recoverable Format vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. An attacker with elevated access can retrieve passwords stored in a recoverable format, potentially compromising credentials and neighboring systems.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to the latest supported version of Automated Logic WebCTRL or Carrier i-Vu. A cumulative patch for versions 8.5 and 9.0 is being made available. WebCTRL 10 and i-Vu 10 are not vulnerable.<br /></span><span>Contact your account representative or authorized dealer for details.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505503">https://www.tenable.com/plugins/ot/505503</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Premium Server Improper Neutralization of Input During Web Page Generation (CVE-2024-8528)]]></title>
            <link>https://www.tenable.com/plugins/ot/505502</link>
            <guid>https://www.tenable.com/plugins/ot/505502</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505502 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. User input is not properly sanitized, allowing injection of malicious scripts into web pages viewed by users.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Automated Logic has reported the following:<br /></span><span><br /></span><span>- Users are advised to upgrade to the latest available version. These vulnerabilities have been remediated in Web CTRL 9.0.<br /></span><span>- Web CTRL 7.0, Web CTRL 6.1, i-Vu 6.0 are out of support.<br /></span><span>- Additionally, Users are encouraged to follow Automated Logic's [Security Best Practices Checklists for Building Automation Systems (BAS)](https://www.automatedlogic.com/en/media/Security Best Practices for a WebCTRL v8.0 system-522_tcm702-168128.pdf) to ensure alignment with best practices installation guidelines.<br /></span><span><br /></span><span>For more information, visit Carrier's security advisories: https://www.corporate.carrier.com/product- security/advisories-resources/<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505502">https://www.tenable.com/plugins/ot/505502</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Incorrect Authorization (CVE-2024-5539)]]></title>
            <link>https://www.tenable.com/plugins/ot/505501</link>
            <guid>https://www.tenable.com/plugins/ot/505501</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505501 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-863 Incorrect Authorization vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products.<br /></span><span>The system fails to perform adequate authorization checks, allowing an actor to perform actions or access resources without proper entitlement, leading to unauthorized access to sensitive information or functionality.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Upgrade to Automated Logic WebCTRL or Carrier i-Vu version 8.0 or later. Versions 7.0, 6.5, and 6.1 are no longer supported.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505501">https://www.tenable.com/plugins/ot/505501</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Premium Server URL Redirection to Untrusted Site (CVE-2024-8527)]]></title>
            <link>https://www.tenable.com/plugins/ot/505500</link>
            <guid>https://www.tenable.com/plugins/ot/505500</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505500 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-601 URL Redirection to Untrusted Site ('Open Redirect') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. The application accepts a user-supplied URL and redirects without proper validation, allowing attackers to exploit user sessions through a combination of open redirect and cross-site scripting to redirect victims to malicious sites.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Automated Logic has reported the following:<br /></span><span><br /></span><span>- Users are advised to upgrade to the latest available version. These vulnerabilities have been remediated in Web CTRL 9.0.<br /></span><span>- Web CTRL 7.0, Web CTRL 6.1, i-Vu 6.0 are out of support.<br /></span><span>- Additionally, Users are encouraged to follow Automated Logic's [Security Best Practices Checklists for Building Automation Systems (BAS)](https://www.automatedlogic.com/en/media/Security Best Practices for a WebCTRL v8.0 system-522_tcm702-168128.pdf) to ensure alignment with best practices installation guidelines.<br /></span><span><br /></span><span>For more information, visit Carrier's security advisories: https://www.corporate.carrier.com/product- security/advisories-resources/<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505500">https://www.tenable.com/plugins/ot/505500</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Premium Server URL Redirection to Untrusted Site (CVE-2024-8527)]]></title>
            <link>https://www.tenable.com/plugins/ot/505499</link>
            <guid>https://www.tenable.com/plugins/ot/505499</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505499 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-601 URL Redirection to Untrusted Site ('Open Redirect') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. The application accepts a user-supplied URL and redirects without proper validation, allowing attackers to exploit user sessions through a combination of open redirect and cross-site scripting to redirect victims to malicious sites.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Automated Logic has reported the following:<br /></span><span><br /></span><span>- Users are advised to upgrade to the latest available version. These vulnerabilities have been remediated in Web CTRL 9.0.<br /></span><span>- Web CTRL 7.0, Web CTRL 6.1, i-Vu 6.0 are out of support.<br /></span><span>- Additionally, Users are encouraged to follow Automated Logic's [Security Best Practices Checklists for Building Automation Systems (BAS)](https://www.automatedlogic.com/en/media/Security Best Practices for a WebCTRL v8.0 system-522_tcm702-168128.pdf) to ensure alignment with best practices installation guidelines.<br /></span><span><br /></span><span>For more information, visit Carrier's security advisories: https://www.corporate.carrier.com/product- security/advisories-resources/<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505499">https://www.tenable.com/plugins/ot/505499</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Automated Logic WebCTRL Premium Server URL Redirection to Untrusted Site (CVE-2024-8527)]]></title>
            <link>https://www.tenable.com/plugins/ot/505498</link>
            <guid>https://www.tenable.com/plugins/ot/505498</guid>
            <pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505498 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>CWE-601 URL Redirection to Untrusted Site ('Open Redirect') vulnerability exists in Automated Logic WebCTRL and Carrier i-Vu Building Automation System products. The application accepts a user-supplied URL and redirects without proper validation, allowing attackers to exploit user sessions through a combination of open redirect and cross-site scripting to redirect victims to malicious sites.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Automated Logic has reported the following:<br /></span><span><br /></span><span>- Users are advised to upgrade to the latest available version. These vulnerabilities have been remediated in Web CTRL 9.0.<br /></span><span>- Web CTRL 7.0, Web CTRL 6.1, i-Vu 6.0 are out of support.<br /></span><span>- Additionally, Users are encouraged to follow Automated Logic's [Security Best Practices Checklists for Building Automation Systems (BAS)](https://www.automatedlogic.com/en/media/Security Best Practices for a WebCTRL v8.0 system-522_tcm702-168128.pdf) to ensure alignment with best practices installation guidelines.<br /></span><span><br /></span><span>For more information, visit Carrier's security advisories: https://www.corporate.carrier.com/product- security/advisories-resources/<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505498">https://www.tenable.com/plugins/ot/505498</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Improper Access Control (CVE-2019-10058)]]></title>
            <link>https://www.tenable.com/plugins/ot/505497</link>
            <guid>https://www.tenable.com/plugins/ot/505497</guid>
            <pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505497 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Various Lexmark products have Incorrect Access Control.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505497">https://www.tenable.com/plugins/ot/505497</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Cross-site Scripting (CVE-2020-10093)]]></title>
            <link>https://www.tenable.com/plugins/ot/505496</link>
            <guid>https://www.tenable.com/plugins/ot/505496</guid>
            <pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505496 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505496">https://www.tenable.com/plugins/ot/505496</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Cross-site Scripting (CVE-2019-18791)]]></title>
            <link>https://www.tenable.com/plugins/ot/505495</link>
            <guid>https://www.tenable.com/plugins/ot/505495</guid>
            <pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505495 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server. The vulnerability can be exploited to expose session credentials and other information via the users web browser.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505495">https://www.tenable.com/plugins/ot/505495</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Cross-site Scripting (CVE-2019-19773)]]></title>
            <link>https://www.tenable.com/plugins/ot/505494</link>
            <guid>https://www.tenable.com/plugins/ot/505494</guid>
            <pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505494 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&lo cale=en&userlocale=EN_US.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505494">https://www.tenable.com/plugins/ot/505494</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Missing Authentication for Critical Function (CVE-2019-9934)]]></title>
            <link>https://www.tenable.com/plugins/ot/505493</link>
            <guid>https://www.tenable.com/plugins/ot/505493</guid>
            <pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505493 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Various Lexmark products have Incorrect Access Control (issue 1 of 2).<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505493">https://www.tenable.com/plugins/ot/505493</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Denial of Service (CVE-2019-9931)]]></title>
            <link>https://www.tenable.com/plugins/ot/505492</link>
            <guid>https://www.tenable.com/plugins/ot/505492</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505492 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Various Lexmark printers contain a denial of service vulnerability in the SNMP service that can be exploited to crash the device.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505492">https://www.tenable.com/plugins/ot/505492</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[HP LaserJet Improper Access Control (CVE-2014-7875)]]></title>
            <link>https://www.tenable.com/plugins/ot/505491</link>
            <guid>https://www.tenable.com/plugins/ot/505491</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505491 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Unspecified vulnerability on the HP LaserJet CM3530 Multifunction Printer CC519A and CC520A with firmware before 53.236.2 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505491">https://www.tenable.com/plugins/ot/505491</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Integer Overflow or Wraparound (CVE-2019-9930)]]></title>
            <link>https://www.tenable.com/plugins/ot/505490</link>
            <guid>https://www.tenable.com/plugins/ot/505490</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505490 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Various Lexmark products have an Integer Overflow.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505490">https://www.tenable.com/plugins/ot/505490</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Lexmark Printers Improper Restriction of Operations within the Bounds of a Memory Buffer (CVE-2018-15519)]]></title>
            <link>https://www.tenable.com/plugins/ot/505489</link>
            <guid>https://www.tenable.com/plugins/ot/505489</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505489 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Various Lexmark devices have a Buffer Overflow (issue 1 of 2).<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505489">https://www.tenable.com/plugins/ot/505489</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens Ruggedcom Rox Uncontrolled Recursion (CVE-2019-13103)]]></title>
            <link>https://www.tenable.com/plugins/ot/505488</link>
            <guid>https://www.tenable.com/plugins/ot/505488</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505488 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A crafted self-referential DOS partition table will cause all Das U-Boot versions through 2019.07-rc4 to infinitely recurse, causing the stack to grow infinitely and eventually either crash or overwrite other data.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span><span><br /></span><span>Siemens has identified the following specific workarounds and mitigations users can apply to reduce risk:<br /></span><span><br /></span><span>    CVE-2018-18440: Disable boot interface access during boot up via the 'bootoption.txt' file parameter 'Security = yes'.<br /></span><span>    CVE-2019-13103: Disable access to the removable media via 'bootoption.txt' file parameter 'Disableautoaccessremovable = yes'.<br /></span><span>    Note that this vulnerability only applies to RUGGEDCOM ROS, if the device boots from removable media.<br /></span><span><br /></span><span>As a general security measure, Siemens strongly recommends protecting network access to devices with appropriate mechanisms.<br /></span><span>In order to operate the devices in a protected IT environment, Siemens recommends configuring the environment according to Siemens operational guidelines for industrial security and following the recommendations in the product manuals.<br /></span><span><br /></span><span>For more information see Siemens Security Advisory SSA-618620<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505488">https://www.tenable.com/plugins/ot/505488</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Integer Overflow or Wraparound (CVE-2024-57258)]]></title>
            <link>https://www.tenable.com/plugins/ot/505487</link>
            <guid>https://www.tenable.com/plugins/ot/505487</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505487 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Integer overflows in memory allocation in Das U-Boot before 2025.01-rc1 occur for a crafted squashfs filesystem via sbrk, via request2size, or because ptrdiff_t is mishandled on x86_64.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505487">https://www.tenable.com/plugins/ot/505487</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Integer Underflow (Wrap or Wraparound) (CVE-2019-14199)]]></title>
            <link>https://www.tenable.com/plugins/ot/505486</link>
            <guid>https://www.tenable.com/plugins/ot/505486</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505486 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy when parsing a UDP packet due to a net_process_received_packet integer underflow during an<br /></span><span>*udp_packet_handler call.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505486">https://www.tenable.com/plugins/ot/505486</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14194)]]></title>
            <link>https://www.tenable.com/plugins/ot/505485</link>
            <guid>https://www.tenable.com/plugins/ot/505485</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505485 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_read_reply when calling store_block in the NFSv2 case.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505485">https://www.tenable.com/plugins/ot/505485</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14198)]]></title>
            <link>https://www.tenable.com/plugins/ot/505484</link>
            <guid>https://www.tenable.com/plugins/ot/505484</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505484 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_read_reply when calling store_block in the NFSv3 case.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505484">https://www.tenable.com/plugins/ot/505484</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Use After Free (CVE-2023-3019)]]></title>
            <link>https://www.tenable.com/plugins/ot/505483</link>
            <guid>https://www.tenable.com/plugins/ot/505483</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505483 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505483">https://www.tenable.com/plugins/ot/505483</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Use of Weak Hash (CVE-2025-3576)]]></title>
            <link>https://www.tenable.com/plugins/ot/505482</link>
            <guid>https://www.tenable.com/plugins/ot/505482</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505482 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability in the MIT Kerberos implementation allows GSSAPI- protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505482">https://www.tenable.com/plugins/ot/505482</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Classic Buffer Overflow (CVE-2022-30552)]]></title>
            <link>https://www.tenable.com/plugins/ot/505481</link>
            <guid>https://www.tenable.com/plugins/ot/505481</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505481 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Das U-Boot 2022.01 has a Buffer Overflow.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505481">https://www.tenable.com/plugins/ot/505481</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14204)]]></title>
            <link>https://www.tenable.com/plugins/ot/505480</link>
            <guid>https://www.tenable.com/plugins/ot/505480</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505480 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function:<br /></span><span>nfs_umountall_reply.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505480">https://www.tenable.com/plugins/ot/505480</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Integer Overflow or Wraparound (CVE-2024-57256)]]></title>
            <link>https://www.tenable.com/plugins/ot/505479</link>
            <guid>https://www.tenable.com/plugins/ot/505479</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505479 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An integer overflow in ext4fs_read_symlink in Das U-Boot before 2025.01-rc1 occurs for zalloc (adding one to an le32 variable) via a crafted ext4 filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and resultant memory overwrite.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505479">https://www.tenable.com/plugins/ot/505479</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens Ruggedcom Rox Improper Neutralization of Special Elements Used in an OS Command (CVE-2025-40947)]]></title>
            <link>https://www.tenable.com/plugins/ot/505478</link>
            <guid>https://www.tenable.com/plugins/ot/505478</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505478 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Affected devices do not properly sanitize user-supplied input during the feature key installation process.    This could allow an authenticated remote attacker to inject arbitrary commands, resulting in remote code execution with root privileges on the underlying operating system.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505478">https://www.tenable.com/plugins/ot/505478</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIPROTEC 5 Small Space of Random Values (CVE-2024-54017)]]></title>
            <link>https://www.tenable.com/plugins/ot/505477</link>
            <guid>https://www.tenable.com/plugins/ot/505477</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505477 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Affected devices do not use  sufficiently random values to create session identifiers. This could allow an unauthenticated remote attacker to brute force a session identifier and gain read access to limited  information from the web server without authorization.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505477">https://www.tenable.com/plugins/ot/505477</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Integer Underflow (Wrap or Wraparound) (CVE-2019-14192)]]></title>
            <link>https://www.tenable.com/plugins/ot/505476</link>
            <guid>https://www.tenable.com/plugins/ot/505476</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505476 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy when parsing a UDP packet due to a net_process_received_packet integer underflow during an nc_input_packet call.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505476">https://www.tenable.com/plugins/ot/505476</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14193)]]></title>
            <link>https://www.tenable.com/plugins/ot/505475</link>
            <guid>https://www.tenable.com/plugins/ot/505475</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505475 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with an unvalidated length at nfs_readlink_reply, in the if block after calculating the new path length.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505475">https://www.tenable.com/plugins/ot/505475</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Heap-based Buffer Overflow (CVE-2022-2347)]]></title>
            <link>https://www.tenable.com/plugins/ot/505474</link>
            <guid>https://www.tenable.com/plugins/ot/505474</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505474 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>There exists an unchecked length field in UBoot. The U-Boot DFU implementation does not bound the length field in USB DFU download setup packets, and it does not verify that the transfer direction corresponds to the specified command. Consequently, if a physical attacker crafts a USB DFU download setup packet with a `wLength` greater than 4096 bytes, they can write beyond the heap-allocated request buffer.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505474">https://www.tenable.com/plugins/ot/505474</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14200)]]></title>
            <link>https://www.tenable.com/plugins/ot/505473</link>
            <guid>https://www.tenable.com/plugins/ot/505473</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505473 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function:<br /></span><span>rpc_lookup_reply.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505473">https://www.tenable.com/plugins/ot/505473</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Uncontrolled Recursion (CVE-2025-9714)]]></title>
            <link>https://www.tenable.com/plugins/ot/505472</link>
            <guid>https://www.tenable.com/plugins/ot/505472</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505472 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Uncontrolled recursion inXPath evaluationin libxml2 up to and including version 2.9.14 allows a local attacker to cause a stack overflow via crafted expressions. XPath processing functions `xmlXPathRunEval`, `xmlXPathCtxtCompile`, and `xmlXPathEvalExpr` were resetting recursion depth to zero before making potentially recursive calls. When such functions were called recursively this could allow for uncontrolled recursion and lead to a stack overflow. These functions now preserve recursion depth across recursive calls, allowing recursion depth to be controlled.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505472">https://www.tenable.com/plugins/ot/505472</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14203)]]></title>
            <link>https://www.tenable.com/plugins/ot/505471</link>
            <guid>https://www.tenable.com/plugins/ot/505471</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505471 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function:<br /></span><span>nfs_mount_reply.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505471">https://www.tenable.com/plugins/ot/505471</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2022-34835)]]></title>
            <link>https://www.tenable.com/plugins/ot/505470</link>
            <guid>https://www.tenable.com/plugins/ot/505470</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505470 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the i2c md command enables the corruption of the return address pointer of the do_i2c_md function.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505470">https://www.tenable.com/plugins/ot/505470</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens Ruggedcom Rox Improper Neutralization of Argument Delimiters in a Command (CVE-2025-40948)]]></title>
            <link>https://www.tenable.com/plugins/ot/505469</link>
            <guid>https://www.tenable.com/plugins/ot/505469</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505469 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Affected devices do not properly validate input in the web server's JSON-RPC interface.    This could allow an authenticated remote attacker to read arbitrary files from the underlying operating system's filesystem with root privileges.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505469">https://www.tenable.com/plugins/ot/505469</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14196)]]></title>
            <link>https://www.tenable.com/plugins/ot/505468</link>
            <guid>https://www.tenable.com/plugins/ot/505468</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505468 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfs_lookup_reply.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505468">https://www.tenable.com/plugins/ot/505468</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14202)]]></title>
            <link>https://www.tenable.com/plugins/ot/505467</link>
            <guid>https://www.tenable.com/plugins/ot/505467</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505467 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function:<br /></span><span>nfs_readlink_reply.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505467">https://www.tenable.com/plugins/ot/505467</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Improper Input Validation (CVE-2020-10648)]]></title>
            <link>https://www.tenable.com/plugins/ot/505466</link>
            <guid>https://www.tenable.com/plugins/ot/505466</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505466 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Das U-Boot through 2020.01 allows attackers to bypass verified boot restrictions and subsequently boot arbitrary images by providing a crafted FIT image to a system configured to boot the default configuration.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505466">https://www.tenable.com/plugins/ot/505466</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2022-30790)]]></title>
            <link>https://www.tenable.com/plugins/ot/505465</link>
            <guid>https://www.tenable.com/plugins/ot/505465</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505465 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Das U-Boot 2022.01 has a Buffer Overflow, a different issue than CVE-2022-30552.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505465">https://www.tenable.com/plugins/ot/505465</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Read (CVE-2019-14197)]]></title>
            <link>https://www.tenable.com/plugins/ot/505464</link>
            <guid>https://www.tenable.com/plugins/ot/505464</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505464 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is a read of out-of-bounds data at nfs_read_reply.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505464">https://www.tenable.com/plugins/ot/505464</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 TM MFP NULL Pointer Dereference (CVE-2026-28388)]]></title>
            <link>https://www.tenable.com/plugins/ot/505463</link>
            <guid>https://www.tenable.com/plugins/ot/505463</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505463 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Issue summary: When a delta CRL that contains a Delta CRL Indicator extension is processed a NULL pointer dereference might happen if the required CRL Number extension is missing.  Impact summary: A NULL pointer dereference can trigger a crash which leads to a Denial of Service for an application.  When CRL processing and delta CRL processing is enabled during X.509 certificate verification, the delta CRL processing does not check whether the CRL Number extension is NULL before dereferencing it. When a malformed delta CRL file is being processed, this parameter can be NULL, causing a NULL pointer dereference.  Exploiting this issue requires the X509_V_FLAG_USE_DELTAS flag to be enabled in the verification context, the certificate being verified to contain a freshestCRL extension or the base CRL to have the EXFLAG_FRESHEST flag set, and an attacker to provide a malformed CRL to an application that processes it.  The vulnerability is limited to Denial of Service and cannot be escalated to achieve code execution or memory disclosure. For that reason the issue was assessed as Low severity according to our Security Policy.<br /></span><span>The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this issue, as the affected code is outside the OpenSSL FIPS module boundary.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505463">https://www.tenable.com/plugins/ot/505463</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14201)]]></title>
            <link>https://www.tenable.com/plugins/ot/505462</link>
            <guid>https://www.tenable.com/plugins/ot/505462</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505462 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is a stack-based buffer overflow in this nfs_handler reply helper function:<br /></span><span>nfs_lookup_reply.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505462">https://www.tenable.com/plugins/ot/505462</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 Incorrect Resource Transfer Between Spheres (CVE-2026-31431)]]></title>
            <link>https://www.tenable.com/plugins/ot/505461</link>
            <guid>https://www.tenable.com/plugins/ot/505461</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505461 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>crypto: algif_aead - Revert to operating out-of-place  This mostly reverts commit 72548b093ee3 except for the copying of the associated data.  There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings.  Get rid of all the complexity added for in-place operation and just copy the AD directly.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505461">https://www.tenable.com/plugins/ot/505461</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-13106)]]></title>
            <link>https://www.tenable.com/plugins/ot/505460</link>
            <guid>https://www.tenable.com/plugins/ot/505460</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505460 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Das U-Boot versions 2016.09 through 2019.07-rc4 can memset() too much data while reading a crafted ext4 filesystem, which results in a stack buffer overflow and likely code execution.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505460">https://www.tenable.com/plugins/ot/505460</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Path Traversal (CVE-2025-6020)]]></title>
            <link>https://www.tenable.com/plugins/ot/505459</link>
            <guid>https://www.tenable.com/plugins/ot/505459</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505459 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A flaw was found in linux-pam. The module pam_namespace may use access user-controlled paths without proper protection, allowing local users to elevate their privileges to root via multiple symlink attacks and race conditions.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505459">https://www.tenable.com/plugins/ot/505459</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens Ruggedcom Rox Improper Neutralization of Special Elements Used in an OS Command (CVE-2025-40949)]]></title>
            <link>https://www.tenable.com/plugins/ot/505458</link>
            <guid>https://www.tenable.com/plugins/ot/505458</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505458 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Affected devices do not properly sanitize user-supplied input in the Scheduler functionality of the Web UI, allowing commands to be injected into the task scheduling backend.    This could allow an authenticated remote attacker to execute arbitrary commands with root privileges on the underlying operating system.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>The following text was originally created by the Cybersecurity and Infrastructure Security Agency (CISA). The original can be found at CISA.gov.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505458">https://www.tenable.com/plugins/ot/505458</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Heap-based Buffer Overflow (CVE-2024-3447)]]></title>
            <link>https://www.tenable.com/plugins/ot/505457</link>
            <guid>https://www.tenable.com/plugins/ot/505457</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505457 with Medium Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A heap-based buffer overflow was found in the SDHCI device emulation of QEMU. The bug is triggered when both `s->data_count` and the size of  `s->fifo_buffer` are set to 0x200, leading to an out-of-bound access. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505457">https://www.tenable.com/plugins/ot/505457</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 TM MFP NULL Pointer Dereference (CVE-2026-28389)]]></title>
            <link>https://www.tenable.com/plugins/ot/505456</link>
            <guid>https://www.tenable.com/plugins/ot/505456</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505456 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Issue summary: During processing of a crafted CMS EnvelopedData message with KeyAgreeRecipientInfo a NULL pointer dereference can happen.  Impact summary: Applications that process attacker-controlled CMS data may crash before authentication or cryptographic operations occur resulting in Denial of Service.  When a CMS EnvelopedData message that uses KeyAgreeRecipientInfo is processed, the optional parameters field of KeyEncryptionAlgorithmIdentifier is examined without checking for its presence. This results in a NULL pointer dereference if the field is missing.  Applications and services that call CMS_decrypt() on untrusted input (e.g., S/MIME processing or CMS- based protocols) are vulnerable.  The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this issue, as the affected code is outside the OpenSSL FIPS module boundary.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505456">https://www.tenable.com/plugins/ot/505456</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 TM MFP NULL Pointer Dereference (CVE-2026-28390)]]></title>
            <link>https://www.tenable.com/plugins/ot/505455</link>
            <guid>https://www.tenable.com/plugins/ot/505455</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505455 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Issue summary: During processing of a crafted CMS EnvelopedData message with KeyTransportRecipientInfo a NULL pointer dereference can happen.  Impact summary: Applications that process attacker-controlled CMS data may crash before authentication or cryptographic operations occur resulting in Denial of Service.  When a CMS EnvelopedData message that uses KeyTransportRecipientInfo with RSA-OAEP encryption is processed, the optional parameters field of RSA-OAEP SourceFunc algorithm identifier is examined without checking for its presence.<br /></span><span>This results in a NULL pointer dereference if the field is missing.<br /></span><span>Applications and services that call CMS_decrypt() on untrusted input (e.g., S/MIME processing or CMS-based protocols) are vulnerable.  The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this issue, as the affected code is outside the OpenSSL FIPS module boundary.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505455">https://www.tenable.com/plugins/ot/505455</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Out-of-bounds Write (CVE-2019-14195)]]></title>
            <link>https://www.tenable.com/plugins/ot/505454</link>
            <guid>https://www.tenable.com/plugins/ot/505454</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505454 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with unvalidated length at nfs_readlink_reply in the else block after calculating the new path length.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505454">https://www.tenable.com/plugins/ot/505454</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RUGGEDCOM ROX Expired Pointer Dereference (CVE-2025-49794)]]></title>
            <link>https://www.tenable.com/plugins/ot/505453</link>
            <guid>https://www.tenable.com/plugins/ot/505453</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505453 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath elements under certain circumstances when the XML schematron has the <sch:name path=.../> schema elements. This flaw allows a malicious actor to craft a malicious XML document used as input for libxml, resulting in the program's crash using libxml or other possible undefined behaviors.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505453">https://www.tenable.com/plugins/ot/505453</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens SIMATIC S7-1500 TM MFP Use After Free (CVE-2026-28387)]]></title>
            <link>https://www.tenable.com/plugins/ot/505452</link>
            <guid>https://www.tenable.com/plugins/ot/505452</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505452 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Issue summary: An uncommon configuration of clients performing DANE TLSA-based server authentication, when paired with uncommon server DANE TLSA records, may result in a use-after-free and/or double-free on the client side.  Impact summary: A use after free can have a range of potential consequences such as the corruption of valid data, crashes or execution of arbitrary code.  However, the issue only affects clients that make use of TLSA records with both the PKIX- TA(0/PKIX-EE(1) certificate usages and the DANE-TA(2) certificate usage.  By far the most common deployment of DANE is in SMTP MTAs for which RFC7672 recommends that clients treat as 'unusable' any TLSA records that have the PKIX certificate usages.  These SMTP (or other similar) clients are not vulnerable to this issue.  Conversely, any clients that support only the PKIX usages, and ignore the DANE-TA(2) usage are also not vulnerable.  The client would also need to be communicating with a server that publishes a TLSA RRset with both types of TLSA records.  No FIPS modules are affected by this issue, the problem code is outside the FIPS module boundary.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505452">https://www.tenable.com/plugins/ot/505452</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RUGGEDCOM ROX Out-of-bounds Read (CVE-2025-49796)]]></title>
            <link>https://www.tenable.com/plugins/ot/505451</link>
            <guid>https://www.tenable.com/plugins/ot/505451</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505451 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead libxml to crash, resulting in a denial of service or other possible undefined behavior due to sensitive data being corrupted in memory.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505451">https://www.tenable.com/plugins/ot/505451</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RuggedCom Rox Integer Underflow (Wrap or Wraparound) (CVE-2019-13104)]]></title>
            <link>https://www.tenable.com/plugins/ot/505450</link>
            <guid>https://www.tenable.com/plugins/ot/505450</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505450 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In Das U-Boot versions 2016.11-rc1 through 2019.07-rc4, an underflow can cause memcpy() to overwrite a very large amount of data (including the whole stack) while reading a crafted ext4 filesystem.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505450">https://www.tenable.com/plugins/ot/505450</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23231)]]></title>
            <link>https://www.tenable.com/plugins/ot/505449</link>
            <guid>https://www.tenable.com/plugins/ot/505449</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505449 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>netfilter: nf_tables: fix use-after-free in nf_tables_addchain() nf_tables_addchain() publishes the chain to table->chains via list_add_tail_rcu() (in nft_chain_add()) before registering hooks. If nf_tables_register_hook() then fails, the error path calls nft_chain_del() (list_del_rcu()) followed by nf_tables_chain_destroy() with no RCU grace period in between.  This creates two use-after-free conditions:   1) Control-plane: nf_tables_dump_chains() traverses table->chains     under rcu_read_lock(). A concurrent dump can still be walking     the chain when the error path frees it.   2) Packet path: for NFPROTO_INET, nf_register_net_hook() briefly     installs the IPv4 hook before IPv6 registration fails.  Packets     entering nft_do_chain() via the transient IPv4 hook can still be dereferencing chain->blob_gen_X when the error path frees the chain.  Add synchronize_rcu() between nft_chain_del() and the chain destroy so that all RCU readers -- both dump threads and in-flight packet evaluation -- have finished before the chain is freed.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505449">https://www.tenable.com/plugins/ot/505449</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2025-40214)]]></title>
            <link>https://www.tenable.com/plugins/ot/505448</link>
            <guid>https://www.tenable.com/plugins/ot/505448</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505448 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>af_unix: Initialise scc_index in unix_add_edge().    Quang Le reported that the AF_UNIX GC could garbage-collect a  receive queue of an alive in-flight socket, with a nice repro.    The repro consists of three stages.      1)      1-a. Create a single cyclic reference with many sockets      1-b. close() all sockets      1-c. Trigger GC      2) 2-a. Pass sk-A to an embryo sk-B      2-b. Pass sk-X to sk-X      2-c.<br /></span><span>Trigger GC      3)      3-a. accept() the embryo sk-B      3-b. Pass sk-B to sk-C      3-c. close() the in-flight sk-A      3-d. Trigger GC As of 2-c, sk-A and sk-X are linked to unix_unvisited_vertices,  and unix_walk_scc() groups them into two different SCCs:<br /></span><span>unix_sk(sk-A)->vertex->scc_index = 2 (UNIX_VERTEX_INDEX_START) unix_sk(sk-X)->vertex->scc_index = 3    Once GC completes, unix_graph_grouped is set to true.  Also, unix_graph_maybe_cyclic is set to true due to sk-X's  cyclic self-reference, which makes close() trigger GC.    At 3-b, unix_add_edge() allocates unix_sk(sk-B)->vertex and  links it to unix_unvisited_vertices.    unix_update_graph() is called at 3-a. and 3-b., but neither  unix_graph_grouped nor unix_graph_maybe_cyclic is changed  because both sk-B's listener and sk-C are not in-flight.    3-c decrements sk-A's file refcnt to 1.<br /></span><span>Since unix_graph_grouped is true at 3-d, unix_walk_scc_fast()  is finally called and iterates 3 sockets sk-A, sk-B, and sk-X:      sk-A<br /></span><span>-> sk-B (-> sk-C)    sk-X -> sk-X    This is totally fine.  All of them are not yet close()d and  should be grouped into different SCCs.<br /></span><span>However, unix_vertex_dead() misjudges that sk-A and sk-B are  in the same SCC and sk-A is dead.      unix_sk(sk-A)->scc_index == unix_sk(sk-B)->scc_index <-- Wrong!    &&    sk-A's file refcnt == unix_sk(sk-A)->vertex->out_degree ^-- 1 in-flight count for sk-B    -> sk-A is dead !?    The problem is that unix_add_edge() does not initialise scc_index.    Stage 1) is used for heap spraying, making a newly allocated  vertex have vertex->scc_index == 2 (UNIX_VERTEX_INDEX_START)  set by unix_walk_scc() at 1-c.    Let's track the max SCC index from the previous unix_walk_scc()  call and assign the max + 1 to a new vertex's scc_index.    This way, we can continue to avoid Tarjan's algorithm while  preventing misjudgments.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505448">https://www.tenable.com/plugins/ot/505448</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RUGGEDCOM RST2428P Integer Overflow or Wraparound (CVE-2026-25210)]]></title>
            <link>https://www.tenable.com/plugins/ot/505447</link>
            <guid>https://www.tenable.com/plugins/ot/505447</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505447 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In libexpat before 2.7.4, the doContent function does not properly determine the buffer size bufSize because there is no integer overflow check for tag buffer reallocation.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505447">https://www.tenable.com/plugins/ot/505447</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RUGGEDCOM RST2428P Improper Input Validation (CVE-2026-23112)]]></title>
            <link>https://www.tenable.com/plugins/ot/505446</link>
            <guid>https://www.tenable.com/plugins/ot/505446</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505446 with Critical Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>In the Linux kernel, the following vulnerability has been resolved:<br /></span><span>nvmet-tcp: add bounds checks in nvmet_tcp_build_pdu_iovec nvmet_tcp_build_pdu_iovec() could walk past cmd->req.sg when a PDU length or offset exceeds sg_cnt and then use bogus sg->length/offset values, leading to _copy_to_iter() GPF/KASAN. Guard sg_idx, remaining entries, and sg->length/offset before building the bvec.<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505446">https://www.tenable.com/plugins/ot/505446</a></p>
    ]]></description>
        </item>
        <item>
            <title><![CDATA[Siemens RUGGEDCOM RST2428P Prototype Pollution (CVE-2025-13465)]]></title>
            <link>https://www.tenable.com/plugins/ot/505445</link>
            <guid>https://www.tenable.com/plugins/ot/505445</guid>
            <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
            <description><![CDATA[
      <p>Tenable OT Security Plugin ID 505445 with High Severity</p>
      <h3>Synopsis</h3>
      <span>The remote OT asset is affected by a vulnerability.<br /></span>
      <h3>Description</h3>
      <span>Lodash versions 4.0.0 through 4.17.22 are vulnerable to prototype pollution in the _.unsetand _.omitfunctions. An attacker can pass crafted paths which cause Lodash to delete methods from global prototypes.    The issue permits deletion of properties but does not allow overwriting their original behavior.    This issue is patched on 4.17.23<br /></span><span><br /></span><span>This plugin only works with Tenable.ot.<br /></span><span>Please visit https://www.tenable.com/products/tenable-ot for more information.<br /></span>
      <h3>Solution</h3>
      <span>Refer to the vendor advisory.<br /></span>

      <p>Read more at  <a href="https://www.tenable.com/plugins/ot/505445">https://www.tenable.com/plugins/ot/505445</a></p>
    ]]></description>
        </item>
    </channel>
</rss>