5.3
CVE-2026-1772
- EPSS 0.01%
- Veröffentlicht 24.02.2026 13:03:23
- Zuletzt bearbeitet 27.02.2026 18:56:47
- Quelle cybersecurity@hitachienergy.co
- CVE-Watchlists
- Unerledigt
RTU500 web interface: An unprivileged user can read user management information. The information cannot be accessed via the RTU500 web user interface but requires further tools like browser development utilities to access them without required privileges.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hitachienergy ≫ Rtu520 Firmware Version >= 12.7.1 <= 12.7.7
Hitachienergy ≫ Rtu520 Firmware Version >= 13.5.1 <= 13.5.4
Hitachienergy ≫ Rtu520 Firmware Version >= 13.6.1 <= 13.6.2
Hitachienergy ≫ Rtu520 Firmware Version >= 13.7.1 < 13.7.8
Hitachienergy ≫ Rtu520 Firmware Version13.8.1
Hitachienergy ≫ Rtu530 Firmware Version >= 12.7.1 <= 12.7.7
Hitachienergy ≫ Rtu530 Firmware Version >= 13.5.1 <= 13.5.4
Hitachienergy ≫ Rtu530 Firmware Version >= 13.6.1 <= 13.6.2
Hitachienergy ≫ Rtu530 Firmware Version >= 13.7.1 < 13.7.8
Hitachienergy ≫ Rtu530 Firmware Version13.8.1
Hitachienergy ≫ Rtu540 Firmware Version >= 12.7.1 <= 12.7.7
Hitachienergy ≫ Rtu540 Firmware Version >= 13.5.1 <= 13.5.4
Hitachienergy ≫ Rtu540 Firmware Version >= 13.6.1 <= 13.6.2
Hitachienergy ≫ Rtu540 Firmware Version >= 13.7.1 < 13.7.8
Hitachienergy ≫ Rtu540 Firmware Version13.8.1
Hitachienergy ≫ Rtu560 Firmware Version >= 12.7.1 <= 12.7.7
Hitachienergy ≫ Rtu560 Firmware Version >= 13.5.1 <= 13.5.4
Hitachienergy ≫ Rtu560 Firmware Version >= 13.6.1 <= 13.6.2
Hitachienergy ≫ Rtu560 Firmware Version >= 13.7.1 < 13.7.8
Hitachienergy ≫ Rtu560 Firmware Version13.8.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.01% | 0.014 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
| cybersecurity@hitachienergy.com | 5.3 | 0 | 0 |
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
|
CWE-280 Improper Handling of Insufficient Permissions or Privileges
The product does not handle or incorrectly handles when it has insufficient privileges to access resources or functionality as specified by their permissions. This may cause it to follow unexpected code paths that may leave the product in an invalid state.