cbcvebase.

Hitachi Energy Rtu500 Series vulnerabilities

4 known vulnerabilities affecting hitachi_energy/rtu500_series.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2022-2502P3HIGHCVSS 7.5vRTU500 series CMU Firmware version 13.3.1vRTU500 series CMU Firmware version 13.3.22023-07-26
CVE-2022-2502 [HIGH] CWE-20 CVE-2022-2502: A vulnerability exists in the HCI IEC 60870-5-104 function included in certain versions of the RTU50 A vulnerability exists in the HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be exploited, if the HCI 60870-5-104 is configured with support for IEC 62351-5 and the CMU contains the license feature ‘Advanced security’ which must be ordered separately. If these preconditions are fulfilled
nvd
CVE-2021-35533P3HIGHCVSS 7.5≥ CMU Firmware version 12.0, ≤ 12.0.*≥ CMU Firmware version 12.2, ≤ 12.2.*+1 more2021-11-26
CVE-2021-35533 [HIGH] CWE-20 CVE-2021-35533: Improper Input Validation vulnerability in the APDU parser in the Bidirectional Communication Interf Improper Input Validation vulnerability in the APDU parser in the Bidirectional Communication Interface (BCI) IEC 60870-5-104 function of Hitachi Energy RTU500 series allows an attacker to cause the receiving RTU500 CMU of which the BCI is enabled to reboot when receiving a specially crafted message. By default, BCI IEC 60870-5-104 function is disabled
nvd
CVE-2022-4608P3HIGHCVSS 7.5vRTU500 series CMU Firmware version 13.3.1vRTU500 series CMU Firmware version 13.3.22023-07-26
CVE-2022-4608 [HIGH] CWE-787 CVE-2022-4608: A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 se A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be exploited, if the HCI 60870-5-104 is configured with support for IEC 62351-3. After session resumption interval is expired an RTU500 initiated update of session parameters causes an unexpected restart due to a s
nvd
CVE-2023-5768P4MEDIUMCVSS 6.1vRTU500 series CMU Firmware version 12.0.1 – 12.0.14vRTU500 series CMU Firmware version 12.2.1 – 12.2.11+5 more2023-12-04
CVE-2023-5768 [MEDIUM] CWE-79 CVE-2023-5768: A vulnerability exists in the HCI IEC 60870-5-104 that affects the RTU500 series product versions li A vulnerability exists in the HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. Incomplete or wrong received APDU frame layout may cause blocking on link layer. Error reason was an endless blocking when reading incoming frames on link layer with wrong length information of APDU or delayed reception of data octets. Only
nvd
Hitachi Energy Rtu500 Series vulnerabilities | cvebase