VendorsHitachi Energyrtu500any version
Vulnerabilities

Hitachi Energy RTU500 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2022-28613
Specially Crafted Modbus TCP Packet Vulnerability in RTU500 series
Published 2022-05-02 · Modified
7.8EPSS 0.010
CVE-2021-27196
Specially Crafted IEC 61850 Protocol Sequence Vulnerability
Published 2021-06-14 · Modified
7.5EPSS 0.016
CVE-2022-3353
IEC 61850 MMS-Server Vulnerability in multiple Hitachi Energy Products
Published 2023-02-21 · Modified
7.5EPSS 0.011
CVE-2021-35533
Specially Crafted IEC 60870-5-104 Packet Vulnerability in RTU500 series
Published 2021-11-26 · Modified
7.5EPSS 0.010
CVE-2022-4608
A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be exploited, if the HCI 60870-5-104 is configured with support for IEC 62351-3. After session resumption interval is expired an RTU500 initiated update of session parameters causes an unexpected restart due to a stack overflow.
Published 2023-07-26 · Modified
7.5EPSS 0.007
CVE-2023-6711
Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. Specially crafted messages sent to the mentioned components are not validated properly and can result in buffer overflow and as final consequence to a reboot of an RTU500 CMU.
Published 2023-12-19 · Modified
7.5EPSS 0.007
CVE-2022-2502
A vulnerability exists in the HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be exploited, if the HCI 60870-5-104 is configured with support for IEC 62351-5 and the CMU contains the license feature ‘Advanced security’ which must be ordered separately. If these preconditions are fulfilled, an attacker could exploit the vulnerability by sending a specially crafted message to the RTU500, causing the targeted RTU500 CMU to reboot. The vulnerability is caused by a missing input data validation which eventually if exploited causes an internal buffer to overflow in the HCI IEC 60870-5-104 function.
Published 2023-07-26 · Modified
7.5EPSS 0.006