CVE-2026-8065
- EPSS 0.58%
- Veröffentlicht 29.09.2026 10:17:13
- Zuletzt bearbeitet 29.09.2026 21:39:02
An authentication bypass vulnerability in the firmware update endpoint of Hitachi Energy RTU500 end-of-life versions allows an unauthenticated attacker to upload arbitrary firmware through a crafted POST request. Successful exploitation could allow t...
CVE-2026-8066
- EPSS 1.16%
- Veröffentlicht 29.09.2026 10:17:13
- Zuletzt bearbeitet 29.09.2026 21:39:02
A directory traversal vulnerability in the file upload functionality of Hitachi Energy RTU500 end-of-life versions allows an unauthenticated attacker to write or overwrite arbitrary files on the device file system. Depending on the files affected, su...
CVE-2026-8067
- EPSS 0.32%
- Veröffentlicht 29.09.2026 10:17:13
- Zuletzt bearbeitet 29.09.2026 21:39:02
An improper authorization vulnerability in the end-of-life versions of RTU500’s web application allows an authenticated user to trigger the RTU500 to reboot through the reset endpoint. Successful exploitation could cause temporary device unavailabili...
CVE-2026-17539
- EPSS 0.35%
- Veröffentlicht 03.09.2026 07:59:47
- Zuletzt bearbeitet 03.09.2026 16:43:15
RTU500 has a vulnerability, where high-load scenarios, such as sending GI requests at short intervals, may cause a NULL pointer dereference in the last entry of the enhanced message queue. This can cause a BCI_IEC104 fatal write error, resulting in c...
CVE-2026-8479
- EPSS 0.17%
- Veröffentlicht 26.05.2026 11:54:09
- Zuletzt bearbeitet 23.07.2026 11:10:00
IEC 60870-5-104 used in bidirectional mode in RTU500 is vulnerable for a NULL pointer dereferencing, if a specially crafted sequence of messages is sent for a certain time, causing Denial of Service impact. Product is only affected if IEC 60870-5-104...
CVE-2026-1773
- EPSS 0.41%
- Veröffentlicht 24.02.2026 13:13:17
- Zuletzt bearbeitet 26.05.2026 16:16:22
IEC 60870-5-104 used in RTU500: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if IEC 60870-5-104 bi-directional functionality is configured. Enabling secure communication following IEC 62351-3 doe...
CVE-2026-1772
- EPSS 0.26%
- Veröffentlicht 24.02.2026 13:03:23
- Zuletzt bearbeitet 27.02.2026 18:56:47
RTU500 web interface: An unprivileged user can read user management information. The information cannot be accessed via the RTU500 web user interface but requires further tools like browser development utilities to access them without required privil...
CVE-2025-1445
- EPSS 0.31%
- Veröffentlicht 25.03.2025 12:38:56
- Zuletzt bearbeitet 15.04.2026 00:35:42
A vulnerability exists in RTU IEC 61850 client and server functionality that could impact the availability if renegotiation of an open IEC61850 TLS connection takes place in specific timing situations, when IEC61850 communication is active. Precondi...
CVE-2024-12169
- EPSS 0.37%
- Veröffentlicht 25.03.2025 12:36:02
- Zuletzt bearbeitet 15.04.2026 00:35:42
A vulnerability exists in RTU500 IEC 60870-5-104 controlled station functionality and IEC 61850 functionality, that allows an attacker performing a specific attack sequence to restart the affected CMU. This vulnerability only applies, if secure commu...
CVE-2024-11499
- EPSS 0.23%
- Veröffentlicht 25.03.2025 12:30:42
- Zuletzt bearbeitet 15.04.2026 00:35:42
A vulnerability exists in RTU500 IEC 60870-4-104 controlled station functionality, that allows an authenticated and authorized attacker to perform a CMU restart. The vulnerability can be triggered if certificates are updated while in use on active co...