Overview
- Description
- A vulnerability exists in the HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be exploited, if the HCI 60870-5-104 is configured with support for IEC 62351-5 and the CMU contains the license feature ‘Advanced security’ which must be ordered separately. If these preconditions are fulfilled, an attacker could exploit the vulnerability by sending a specially crafted message to the RTU500, causing the targeted RTU500 CMU to reboot. The vulnerability is caused by a missing input data validation which eventually if exploited causes an internal buffer to overflow in the HCI IEC 60870-5-104 function.
- Source
- cybersecurity@hitachienergy.com
- NVD status
- Modified
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Severity
- HIGH
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:hitachienergy:rtu500:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "DE94252D-03EE-451B-8322-B4DBC790C6E9" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:hitachienergy:rtu500_firmware:13.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C444DE8E-5AC5-409B-8DA0-5C49A69076DD" }, { "criteria": "cpe:2.3:o:hitachienergy:rtu500_firmware:13.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4C55747C-E5DA-4444-B017-1994011A5EF7" }, { "criteria": "cpe:2.3:o:hitachienergy:rtu500_firmware:13.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0997C03B-21AC-4767-856C-79833FB378A8" }, { "criteria": "cpe:2.3:o:hitachienergy:rtu500_firmware:13.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C0763F03-C6C8-4104-9028-3CF265F289D5" } ], "operator": "OR" } ], "operator": "AND" } ]