QID 591149

Date Published: 2022-11-04

QID 591149: Hitachi Energy RTU500 series Vulnerability (ICSA-22-242-04,8DBD000103)

AFFECTED PRODUCTS
Hitachi Energy reported this vulnerability affects the following RTU500 series in which HCI Modbus TCP is configured and enabled by project configuration:
RTU500 series CMU Firmware version 12.0.*
RTU500 series CMU Firmware version 12.2.*
RTU500 series CMU Firmware version 12.4.*
RTU500 series CMU Firmware version 12.6.*
RTU500 series CMU Firmware version 12.7.*
RTU500 series CMU Firmware version 13.2.*

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning

Successful exploitation of this vulnerability could cause an internal buffer overflow, which can reboot the product.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as High - 7.8 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section icsa-22-242-04 for affected packages and patching details.

    Vendor References

    CVEs related to QID 591149

    Software Advisories
    Advisory ID Software Component Link
    icsa-22-242-04 URL Logo www.cisa.gov/uscert/ics/advisories/icsa-22-242-04