top of page
perceptive_background_267k.jpg

Hitachi Energy RTU500 Product

Published:

3 maart 2026 om 12:00:00

Alert date:

3 maart 2026 om 18:03:35

Source:

cisa.gov

Click to open the original link from this advisory

Critical Infrastructure, Network Infrastructure

Multiple vulnerabilities affect Hitachi Energy RTU500 series CMU firmware across various versions (12.7.1-12.7.7, 13.5.1-13.5.4, 13.6.1-13.6.2, 13.7.1-13.7.7, 13.8.1). The vulnerabilities include information disclosure through web interface (CVE-2026-1772), denial of service via IEC 60870-5-104 protocol (CVE-2026-1773), stack overflow in libexpat XML parsing (CVE-2024-8176), and resource exhaustion in libexpat (CVE-2025-59375). Successful exploitation can result in exposure of user management information and device outage. The highest CVSS score is 7.5 (High). Firmware updates are available to address all vulnerabilities.

Technical details

Mitigation steps:

Affected products:

Hitachi Energy RTU500 Product

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page