top of page
perceptive_background_267k.jpg

Hitachi Energy RTU500 Product

Published:

3 March 2026 at 12:00:00

Alert date:

3 March 2026 at 18:03:35

Source:

cisa.gov

Click to open the original link from this advisory

Critical Infrastructure, Network Infrastructure

Multiple vulnerabilities affect Hitachi Energy RTU500 series CMU firmware across various versions (12.7.1-12.7.7, 13.5.1-13.5.4, 13.6.1-13.6.2, 13.7.1-13.7.7, 13.8.1). The vulnerabilities include information disclosure through web interface (CVE-2026-1772), denial of service via IEC 60870-5-104 protocol (CVE-2026-1773), stack overflow in libexpat XML parsing (CVE-2024-8176), and resource exhaustion in libexpat (CVE-2025-59375). Successful exploitation can result in exposure of user management information and device outage. The highest CVSS score is 7.5 (High). Firmware updates are available to address all vulnerabilities.

Technical details

Mitigation steps:

Affected products:

Hitachi Energy RTU500 Product

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page