IM
IronMonkey Threat Research
‹ Back to ICS Advisories

Cybersecurity Alerts and Notifications | Hitachi Energy

UNKNOWN
CVSS 0.0
Date 2026-06-20T18:49:03+00:00
Source hitachi-energy
Published by Hitachi Energy

// Description

# Cybersecurity Alerts and Notifications | Hitachi Energy [![Image 1](https://www.hitachienergy.com/content/dam/web/logo/hitachi_logo_2025.svg)](https://www.hitachienergy.com/) [Login](https://cop.hitachienergy.com/) Global | EN Choose your region and language Region Global Global Algeria Angola Argentina Australia Austria Bahrain Brazil Bulgaria Canada Chile China Colombia Czech Republic Democratic Republic of the Congo Denmark Egypt Finland France Germany Greece

// Vulnerabilities (398)

CVE ID CVSS Score Severity Description
CVE-2022-2277 0.0 unknown
A vulnerability exists in the ICCP stack due to validation flaw in the process establishing the ICCP communication. The validation flaw will cause a denial-of-service condition when ICCP of SYS600 is requested to forward any data item updates with timestamps too far in the future. By default, ICCP is not configured and not enabled. CVE-2022-2277 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2017-5754 0.0 unknown
No description available.
CVE-2021-35532 0.0 unknown
A vulnerability exists in the file upload validation component of the affected product. The vulnerability allows an attacker to gain access to the system and obtain an account with sufficient privilege to then upload a malicious firmware to the product.CVE-2021-35532 has been assigned to this vulnerability. A CVSS v3 base score of 6.0 has been assigned; the CVSS vector string is (AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L).
CVE-2019-19003 0.0 unknown
CVE-2019-19003. For ABB eSOMS Versions 6.0.2 and earlier, the HTTPOnly flag is not set. This can allow JavaScript to access the cookie contents, which in turn might enable Cross-site Scripting. CVE-2019-19003 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
CVE-2020-26144 0.0 unknown
CVE-2020-26144. An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC1042 (i.e., LLC/SNAP) header for EAPOL. An adversary can abuse this to inject arbitrary network packets independent of the network configuration.
CVE-2019-20388 0.0 unknown
CVE-2019-20388. xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.
CVE-2022-23990 0.0 unknown
CVE-2022-23990. Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function.
CVE-2013-5211 0.0 unknown
The monlist feature in ntp_request.c in ntpd in NTP before 4.2.7p26 allows remote attackers to cause a denial of service (traffic amplification) via forged (1) REQ_MON_GETLIST or (2) REQ_MON_GETLIST_1 requests, as exploited in the wild in December 2013.
CVE-2020-14311 0.0 unknown
There is an issue with grub2 before version 2.06 while handling symlink on ext filesystems. A filesystem containing a symbolic link with an inode size of UINT32_MAX causes an arithmetic overflow leading to a zero-sized memory allocation with subsequent heap-based buffer overflow.
CVE-2019-19089 0.0 unknown
CVE-2019-19089. For ABB eSOMS Versions 6.0.3 and earlier, the X-Content-Type-Options Header is missing in the HTTP response, potentially causing the response body to be interpreted and displayed as different content type other than declared. A possible attack scenario would be unauthorized code execution via text interpreted as JavaScript. CVE-2019-19089 has been assigned to this vulnerability. A CVSS v3 base score of 6.1 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).
CVE-2024-4872 0.0 unknown
A vulnerability exists in the query validation of the MicroSCADA Pro/X SYS600 product. If exploited this could allow an authenticated attacker to inject code towards persistent data. Note that to successfully exploit this vulnerability an attacker must have a valid credential.
CVE-2023-6711 0.0 unknown
A vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product. Specially crafted messages sent to the mentioned components are not validated properly and can result in buffer overflow and as final consequence to a reboot of an RTU500 CMU.
CVE-2022-28330 0.0 unknown
No description available.
CVE-2022-0492 0.0 unknown
The affected product is vulnerable to a privilege escalation attack, which could allow an attacker to bypass the namespace isolation unexpectedly.CVE-2022-0492 has been assigned to this vulnerability. A CVSS v3 base score of 7.8 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).
CVE-2019-11478 0.0 unknown
CVE-2019-11478. A remote attacker sending specially crafted TCP Selective Acknowledgment (SACK) sequences may cause a denial-of-service condition. CVE-2019-11478 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).
CVE-2016-4527 0.0 unknown
ABB PCM600 before 2.7 improperly stores PCM600 authentication credentials, which allows local users to obtain sensitive information via unspecified vectors.
CVE-2019-12256 0.0 unknown
This vulnerability resides in the IPv4 option parsing and may be triggered by IPv4 packets containing invalid options. The most likely outcome of triggering this defect is that the tNet0 task crashes. This vulnerability can result in remote code execution.
CVE-2022-28615 0.0 unknown
No description available.
CVE-2021-3156 0.0 unknown
Sudo is included in most Linux operating systems, including in the affected product. Versions of Sudo prior to 1.9.5p2 contain an Off-by-one Error that can result in a heap-based buffer overflow, which then allows privilege escalation to root.CVE-2021-3156 has been assigned to this vulnerability. A CVSS v3 base score of 7.8 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).
CVE-2023-42795 0.0 unknown
CVE-2023-42795. Incomplete Cleanup vulnerability in Apache Tomcat.When recycling various internal objects in Apache Tomcat from 11.0.0-M1 through 11.0.0-M11, from 10.1.0-M1 through 10.1.13, from 9.0.0-M1 through 9.0.80 and from 8.5.0 through 8.5.93, an error could cause Tomcat to skip some parts of the recycling process leading to information leaking from the current request/response to the next. Users are recommended to upgrade to version 11.0.0-M12 onwards, 10.1.14 onwards, 9.0.81 onwards or 8.5.94 onwards, which fixes the issue.
CVE-2020-26146 0.0 unknown
CVE-2020-26146. An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfiltrate selected fragments. This vulnerability is exploitable when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used. Note that WEP is vulnerable to this attack by design.
CVE-2026-24515 0.0 unknown
CVE-2026-24515. CWE-476: NULL Pointer Dereference. In libexpat before 2.7.4, XML_ExternalEntityParserCreate does not copy unknown encoding handler user data, causing Denial of Service impact. Product is only affected if IEC 61850 functionality is configured.
CVE-2025-1038 0.0 unknown
The "Diagnostics Tools" page of the web-based configuration utility does not properly validate user-controlled input, allowing an authenticated user with high privileges to inject commands into the command shell of the TropOS 4th Gen device. The injected commands can be exploited to execute several set-uid (SUID) applications to ultimately gain root access to the TropOS device.
CVE-2021-20225 0.0 unknown
A flaw was found in grub2 in versions prior to 2.06. The option parser allows an attacker to write past the end of a heap-allocated buffer by calling certain commands with a large number of specific short forms of options. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2020-6994 0.0 unknown
Improper parsing of URL arguments could allow an attacker to exploit this vulnerability by crafting specially formed HTTP requests to overflow an internal buffer. Successful exploitation could fully compromise the device.CVE-2020-6994 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2022-3682 0.0 unknown
A vulnerability exists in the affected SDM600 versions file permission validation. An attacker could exploit the vulnerability by gaining access to the system and uploading a specially crafted message to the system node, which could result in arbitrary code execution. CVE-2022-3682 has been assigned to this vulnerability. A CVSS v3 base score of 9.9 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).
CVE-2024-28020 0.0 unknown
A user/password reuse vulnerability exists in the FOXMAN-UN application and server management. If exploited a malicious user could use the passwords and login information to extend access on the server and other services.
CVE-2017-11496 0.0 unknown
No description available.
CVE-2023-0286 0.0 unknown
CVE-2023-0286. X.400 addresses were parsed as an ASN1_STRING but the public structure definition for GENERAL_NAME incorrectly specified the type of the x400Address field as ASN1_TYPE. When CRL checking is enabled, this vulnerability may allow an attacker to pass arbitrary pointers to a memcmp call, enabling them to read memory contents or enact a denial of service.
CVE-2020-25632 0.0 unknown
A flaw was found in grub2 in versions prior to 2.06. The rmmod implementation allows the unloading of a module used as a dependency without checking if any other dependent module is still loaded leading to a use-after-free scenario. This could allow arbitrary code to be executed or a bypass of Secure Boot protections. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2022-29492 0.0 unknown
A vulnerability exists in the handling of malformed IEC 104 TCP packets. Upon receiving a malformed IEC 104 TCP packet, the malformed packet is dropped; however, the TCP connection is left open. This may cause a denial-of-service condition if the affected connection is left open. CVE-2022-29492 has been assigned to this vulnerability. A CVSS v3 base score of 5.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).
CVE-2020-11868 0.0 unknown
ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 could allow an off-path attacker to block unauthenticated synchronization via a server mode packet with a spoofed source IP address because transmissions are rescheduled even when a packet lacks a valid origin timestamp.
CVE-2022-22822 0.0 unknown
CVE-2022-22822. addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2024-28022 0.0 unknown
A vulnerability exists in the FOXMAN-UN server / APIGateway that if exploited allows a malicious user to perform an arbitrary number of authentication attempts using different passwords, and eventually gain access to other components in the same security realm using the targeted account.
CVE-2015-3963 0.0 unknown
Wind River VxWorks before 5.5.1, 6.5.x through 6.7.x before 6.7.1.1, 6.8.x before 6.8.3, 6.9.x before 6.9.4.4, and 7.x before 7 ipnet_coreip 1.2.2.0, as used on Schneider Electric SAGE RTU devices before J2 and other devices, does not properly generate TCP initial sequence number (ISN) values, which makes it easier for remote attackers to spoof TCP sessions by predicting an ISN value.
CVE-2022-22963 0.0 unknown
No description available.
CVE-2025-27631 0.0 unknown
The TRMTracker web application is vulnerable to LDAP injection attack potentially allowing an attacker to inject code into a query and execute remote commands that can read and update data on the website.
CVE-2019-19002 0.0 unknown
CVE-2019-19002. For ABB eSOMS Versions 6.0.2 and earlier, the X-XSS-Protection HTTP response header is not set in responses from the web server. For older web browser not supporting Content Security Policy, this might increase the risk of cross-site scripting. CVE-2019-19002 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N).
CVE-2023-0217 0.0 unknown
An invalid pointer dereference on read can be triggered when an application tries to check a malformed DSA public key by the EVP_PKEY_public_check() function. This will most likely lead to an application crash. This function can be called on public keys supplied from untrusted sources which could allow an attacker to cause a denial of service attack. The TLS implementation in OpenSSL does not call this function but applications might call the function if there are additional security requirements imposed by standards such as FIPS 140-3.
CVE-2025-1484 0.0 unknown
A vulnerability exists in the media upload component of the Asset Suite versions listed below. If successfully exploited an attacker could impact the confidentiality or integrity of the system. An attacker can use this vulnerability to construct a request that will cause JavaScript code supplied by the attacker to execute within the user’s browser in the context of that user’s session with the application.
CVE-2023-0216 0.0 unknown
An invalid pointer dereference on read can be triggered when an application tries to load malformed PKCS7 data with the d2i_PKCS7(), d2i_PKCS7_bio() or d2i_PKCS7_fp() functions. The result of the dereference is an application crash which could lead to a denial of service attack. The TLS implementation in OpenSSL does not call this function however third party applications might call these functions on untrusted data.
CVE-2023-4518 0.0 unknown
CVE-2023-4518. A vulnerability exists in the input validation of the IEC 61850 GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, GOOSE receiving blocks need to be configured.
CVE-2021-40334 0.0 unknown
This vulnerability is due to the implementation of the proprietary management protocol (TCP Port 5558), in which if SSH is activated, could cause a disruption to the NMS and NE communication.CVE-2021-40334 has been assigned to this vulnerability. A CVSS v3 base score of 8.6 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H).
CVE-2021-40341 0.0 unknown
Affected Hitachi Energy UNEM products use the DES cypher to encrypt user credentials used to access the network elements. DES is no longer considered secure because it uses a short 56-bit key, which could allow the cypher to be decrypted in a short time.-CVE-2021-40341 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N).
CVE-2026-2459 0.0 unknown
CVE-2026-2459. A vulnerability exists in REB500 for an authenticated user with Installer role to access and alter the contents of directories that the role is not authorized to do so.
CVE-2025-10492 0.0 unknown
CVE-2025-10492. A vulnerability exists in Jasper Report third party component that is used for creating custom reports in Ellipse product. A Java deserialization vulnerability has been discovered in Jaspersoft Library. Improper handling of externally supplied data may allow attackers to execute arbitrary code remotely on systems that use the affected library.
CVE-2022-22826 0.0 unknown
CVE-2022-22826. nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2019-12265 0.0 unknown
The IGMPv3 reception handler does not expect packets to be spread across multiple IP-fragments.
CVE-2024-2462 0.0 unknown
Hitachi Energy is aware of a vulnerability that affects the FOXCST client application which if exploited would allow attackers to intercept or falsify data exchanges between the client and the server.
CVE-2024-45490 0.0 unknown
CVE-2024-45490. An issue was discovered in libexpat before 2.6.3. xmlparse.c does not reject a negative length for XML_ParseBuffer.
CVE-2022-37436 0.0 unknown
CVE-2022-37436. Prior to Apache HTTP Server 2.4.55, a malicious backend can cause the response headers to be truncated early, resulting in some headers being incorporated into the response body. If the later headers have any security purpose, they will not be interpreted by the client.
CVE-2019-19906 0.0 unknown
CVE-2019-19906. cyrus-sasl (aka Cyrus SASL) 2.1.27 has an out-of-bounds write leading to unauthenticated remote denial-of-service in OpenLDAP via a malformed LDAP packet. The OpenLDAP crash is ultimately caused by an off-by-one error in _sasl_add_string in common.c in cyrus-sasl.
CVE-2023-46604 0.0 unknown
CVE-2023-46604. The Java OpenWire protocol marshaller is vulnerable to Remote Code Execution. This vulnerability may allow a remote attacker with network access to either a Java-based OpenWire broker or client to run arbitrary shell commands by manipulating serialized class types in the OpenWire protocol to cause either the client or the broker (respectively) to instantiate any class on the classpath. Users are recommended to upgrade both brokers and clients to version 5.15.16, 5.16.7, 5.17.6, or 5.18.3 which fixes this issue.. Impact of this vulnerability to Tableau Server as described in <https://kb.tableau.com/articles/Issue/remote-code-execution-rce-vulnerability-impacting-apache-activemq-clients>: On November 2, 2023, Apache announced the discovery of CVE-2023-46604, a Remote Code Execution (RCE) vulnerability impacting Apache ActiveMQ clients. As a result of this issue, a remote threat actor with network access to either a Java-based OpenWire broker or client could execute a RCE to run arbitrary shell commands.
CVE-2022-3684 0.0 unknown
A vulnerability exists in an SDM600 endpoint. An attacker could exploit this vulnerability by running multiple parallel requests, causing the SDM600 web services to become busy, rendering the application unresponsive. CVE-2022-3684 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2022-3786 0.0 unknown
CVE-2022-3786. A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification and requires either a CA to have signed a malicious certificate or for an application to continue certificate verification despite failure to construct a path to a trusted issuer. An attacker can craft a malicious email address in a certificate to overflow an arbitrary number of bytes containing the `.' character (decimal 46) on the stack. This buffer overflow could result in a crash (causing a denial of service). In a TLS client, this can be triggered by connecting to a malicious server. In a TLS server, this can be triggered if the server requests client authentication and a malicious client connects. Fixed in OpenSSL 3.0.7 (Affected 3.0.0,3.0.1,3.0.2,3.0.3,3.0.4,3.0.5,3.0.6).
CVE-2022-4203 0.0 unknown
A read buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification and requires either a CA to have signed the malicious certificate or for the application to continue certificate verification despite failure to construct a path to a trusted issuer. The read buffer overrun might result in a crash which could lead to a denial of service attack. In theory it could also result in the disclosure of private memory contents (such as private keys, or sensitive plaintext) although we are not aware of any working exploit leading to memory contents disclosure as of the time of release of this advisory. In a TLS client, this can be triggered by connecting to a malicious server. In a TLS server, this can be triggered if the server requests client authentication and a malicious client connects.
CVE-2018-16842 0.0 unknown
No description available.
CVE-2017-13088 0.0 unknown
No description available.
CVE-2017-5753 0.0 unknown
No description available.
CVE-2019-9290 0.0 unknown
A vulnerability exists in the tzdata component due to a mismatch between allocation and deallocation functions. If successfully exploited, an attacker could trigger memory corruption, potentially leading to local escalation of privilege.
CVE-2017-5715 0.0 unknown
CVE-2017-5715. An attacker with local access to the system could potentially disclose information from protected memory areas via a side-channel attack on the processor cache.
CVE-2024-2377 0.0 unknown
A vulnerability exists in the too permissive HTTP response header web server settings of the SDM600. An attacker can take advantage of this and possibly carry out privileged actions and access sensitive information.
CVE-2020-26145 0.0 unknown
CVE-2020-26145. An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept second (or subsequent) broadcast fragments even when sent in plaintext and process them as full unfragmented frames. An adversary can abuse this to inject arbitrary network packets independent of the network configuration.
CVE-2019-12260 0.0 unknown
This vulnerability could lead to a buffer overflow of up to a full TCP receive-window (by default, 10k-64k depending on version). The buffer overflow happens in the task calling recv()/recvfrom()/recvmsg(). Applications that pass a buffer equal to or larger than a full TCP-window are not susceptible to this attack. Applications passing a stack-allocated variable as a buffer are the easiest to exploit. The most likely outcome is a crash of the application reading from the affected socket, which could result in remote code execution.
CVE-2020-25710 0.0 unknown
CVE-2020-25710. A flaw was found in OpenLDAP in versions before 2.4.56. This flaw allows an attacker who sends a malicious packet processed by OpenLDAP to force a failed assertion in csnNormalize23(). The highest threat from this vulnerability is to system availability.
CVE-2018-15504 0.0 unknown
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. The server mishandles HTTP request fields associated with time, which results in a NULL pointer dereference, as demonstrated by If-Modified-Since or If-Unmodified-Since with a month greater than 11. CVE-2018-15504 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2016-2178 0.0 unknown
CVE-2016-2178. The dsa_sign_setup function in crypto/dsa/dsa_ossl.c in OpenSSL through 1.0.2h does not properly ensure the use of constant-time operations, which makes it easier for local users to discover a DSA private key via a timing side-channel attack.
CVE-2025-1036 0.0 unknown
Command injection vulnerability exists in the "Logging" page of the web-based configuration utility. An authenticated user with low-privileged network access for the configuration utility can execute arbitrary commands on the underlying OS to obtain root SSH access to the TropOS 4th Gen device.
CVE-2014-3566 0.0 unknown
No description available.
CVE-2022-4608 0.0 unknown
A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be exploited if the HCI 60870-5-104 is configured with support for IEC 62351-3. After session resumption interval is expired, an RTU500 initiated update of session parameters could cause an unexpected restart due to a stack overflow.
CVE-2022-0778 0.0 unknown
CVE-2022-0778. The BN_mod_sqrt() function in openSSL, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when parsing certificates that contain elliptic curve public keys in compressed form or explicit elliptic curve parameters with a base point encoded in compressed form. It is possible to trigger the infinite loop by crafting a certificate that has invalid explicit curve parameters. Since certificate parsing happens prior to verification of the certificate signature, any process that parses an externally supplied certificate may thus be subject to a denial of service attack. The infinite loop can also be reached when parsing crafted private keys as they can contain explicit elliptic curve parameters.
CVE-2019-19000 0.0 unknown
CVE-2019-19000. For ABB eSOMS 6.0.3 and earlier, The Cache-Control and Pragma HTTP header(s) have not been properly configured within the application response. This can potentially allow browsers and proxies to cache sensitive information.CVE-2019-19000 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N).
CVE-2025-6021 0.0 unknown
CVE-2025-6021. A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer size calculations can lead to a stack-based buffer overflow. This issue can result in memory corruption or a denial of service when processing crafted input.
CVE-2025-27632 0.0 unknown
A Host Header Injection vulnerability in TRMTracker application may allow an attacker by modifying the host header value in an HTTP request to leverage multiple attack vectors, including defacing the site content through web-cache poisoning.
CVE-2022-22965 0.0 unknown
CVE-2022-22965. A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding. The specific exploit requires the application to run on Tomcat as a WAR deployment. If the application is deployed as a Spring Boot executable jar, i.e. the default, it is not vulnerable to the exploit. However, the nature of the vulnerability is more general, and there may be other ways to exploit it.
CVE-2020-14372 0.0 unknown
A flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI command when Secure Boot is enabled. This flaw allows an attacker with privileged access to craft a Secondary System Description Table (SSDT) containing code to overwrite the Linux kernel lockdown variable content directly into memory. The table is further loaded and executed by the kernel, defeating its Secure Boot lockdown and allowing the attacker to load unsigned code. The highest threat from this vulnerability is to data confidentiality and integrity, as well as system availability.
CVE-2022-29490 0.0 unknown
A vulnerability exists in the Workplace X WebUI, in which an authenticated user could execute any MicroSCADA internal scripts irrespective of the authenticated user's role.CVE-2022-29490 has been assigned to this vulnerability. A CVSS v3 base score of 8.5 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).
CVE-2021-3450 0.0 unknown
CVE-2021-3450. The X509_V_FLAG_X509_STRICT flag enables additional security checks of the certificates present in a certificate chain. It is not set by default. Starting from OpenSSL version 1.1.1h a check to disallow certificates in the chain that have explicitly encoded elliptic curve parameters was added as an additional strict check. An error in the implementation of this check meant that the result of a previous check to confirm that certificates in the chain are valid CA certificates was overwritten. This effectively bypasses the check that non-CA certificates must not be able to issue other certificates. If a "purpose" has been configured then there is a subsequent opportunity for checks that the certificate is a valid CA. All of the named "purpose" values implemented in libcrypto perform this check. Therefore, where a purpose is set the certificate chain will still be rejected even when the strict flag has been used. A purpose is set by default in libssl client and server certificate verification routines, but it can be overridden or removed by an application. In order to be affected, an application must explicitly set the X509_V_FLAG_X509_STRICT verification flag and either not set a purpose for the certificate verification or, in the case of TLS client or server applications, override the default purpose. OpenSSL versions 1.1.1h and newer are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1k. OpenSSL 1.0.2 is not impacted by this issue. Fixed in OpenSSL 1.1.1k (Affected 1.1.1h-1.1.1j).
CVE-2019-9262 0.0 unknown
A vulnerability exists in the MPEG4Extractor component of the media extractor. If successfully exploited, an attacker could trigger an out-of-bounds write, potentially leading to remote code execution.
CVE-2017-13077 0.0 unknown
No description available.
CVE-2016-2183 0.0 unknown
CVE-2016-2183. The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTPS session using Triple DES in CBC mode, aka a "Sweet32" attack.
CVE-2024-11499 0.0 unknown
CVE-2024-11499
CVE-2021-35529 0.0 unknown
An attacker who has gained access to an authorized user 's computer could exploit this vulnerability to access database credentials and gain read/edit access to application data.CVE-2021-35529 has been assigned to this vulnerability. A CVSS v3 base score of 7.7 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N).
CVE-2020-24588 0.0 unknown
CVE-2020-24588. The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated. Against devices that support receiving non-SSP A-MSDU frames (which is mandatory as part of 802.11n), an adversary can abuse this to inject arbitrary network packets.
CVE-2021-44832 0.0 unknown
CVE-2021-44832. Apache Log4j2 versions 2.0-beta7 through 2.17.0 (excluding security fix releases 2.3.2 and 2.12.4) are vulnerable to code execution attacks if the JDBC Appender is being used and configured to allow the use of protocols other than Java. This could allow attackers with permission to modify the logging configuration file to execute code via a data source referencing a JNDI URI. This issue is fixed by limiting JNDI data source names to the java protocol in Log4j2 versions 2.17.1, 2.12.4, and 2.3.2.
CVE-2022-36760 0.0 unknown
CVE-2022-36760. Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requests to the AJP server it forwards requests to. This issue affects Apache HTTP Server Apache HTTP Server 2.4 version 2.4.54 and prior versions.
CVE-2017-8872 0.0 unknown
The htmlParseTryOrFinish function in HTMLparser.c in libxml2 2.9.4 allows attackers to cause a denial of service (buffer over-read) or information disclosure.
CVE-2023-2650 0.0 unknown
When the BACnet Secure Connect feature is enabled in the affected products, a temporary denial-of-service vulnerability due to allocation of resources without limits or throttling exists in the OpenSSL library integrated into the products, during data validation. This vulnerability allows a remote attacker to cause a denial-of-service condition on the affected products by sending a certificate that contains a specially crafted ANS 1 OBJECT IDENTIFIER.
CVE-2024-2097 0.0 unknown
CVE-2024-2097. An authenticated malicious client can send a special LINQ query to execute arbitrary code remotely (RCE) on the SCM server from List control, and execute the arbitrary code on the same system where SCMArchivedEventViewerTool is installed in the case of SCM Tools.
CVE-2016-8618 0.0 unknown
No description available.
CVE-2021-27434 0.0 unknown
The OPC UA .NET Framework can expose sensitive information to an actor who is not authorized to have access.CVE-2021-27434 has been assigned to this vulnerability. A CVSS v3 base score of 7.2 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:L).
CVE-2024-28024 0.0 unknown
A vulnerability exists in the FOXMAN-UN in which sensitive information is stored in cleartext within a resource that might be accessible to another control sphere.
CVE-2021-40337 0.0 unknown
Multiple stored XSS vulnerabilities exist in the LinkOne application, allowing multiple web attacks and the theft of sensitive information.CVE-2021-40337 has been assigned to these vulnerabilities. A CVSS v3 base score of 4.2 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N).
CVE-2025-39205 0.0 unknown
A vulnerability exists in the IEC 61850 in MACH GWS product. The certificate validation of the TLS protocol allows remote Man-in-the-Middle attack due to missing proper validation.
CVE-2017-3737 0.0 unknown
CVE-2017-3737. In OpenSSL 1.0.2 an "error state" mechanism was introduced. This "error state" mechanism does not work correctly if SSL_read() or SSL_write() is called directly by an application. This could result in data being sent out unencrypted by the SSL/TLS record layer. Successful exploitation requires an attacker to cause a fatal error in the victim's SSL/TLS handshake algorithm, and that the targeted application calls SSL_read() or SSL_write() after having already received a fatal error. No user interaction or privileges are required to exploit this security vulnerability. The vulnerability could allow to compromise confidentiality of data by transmitting it unencrypted over the network.
CVE-2021-35533 0.0 unknown
An issue exists in the BCI IEC 60870-5-104 function included in the affected products. If BCI IEC 60870-5-104 is enabled and configured, an attacker could exploit the vulnerability by sending a specially crafted message to the affected product, causing it to reboot. This vulnerability is caused by the validation error in the APDU parser of the BCI IEC 60870-5-104 function.CVE-2021-35533 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2020-15688 0.0 unknown
The HTTP digest authentication in the GoAhead web server before 5.1.2 does not completely protect against replay attacks. An unauthenticated remote attacker could bypass authentication via capture-replay if TLS is not used to protect the underlying communication channel. CVE-2020-15688 has been assigned to this vulnerability. A CVSS v3 base score of 8.8 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H).
CVE-2022-3683 0.0 unknown
A vulnerability exists in the affected SDM600 versions application programmable interface (API) web services authorization validation implementation. An attacker successfully exploiting the vulnerability could read sensitive data directly from an insufficiently protected or restricted data store. CVE-2022-3683 has been assigned to this vulnerability. A CVSS v3 base score of 7.7 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N).
CVE-2021-20233 0.0 unknown
A flaw was found in grub2 in versions prior to 2.06. Setparam_prefix() in the menu rendering code performs a length calculation on the assumption that expressing a quoted single quote will require 3 characters, while it actually requires 4 characters which allows an attacker to corrupt memory by one byte for each quote in the input. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2021-23841 0.0 unknown
CVE-2021-23841. The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and serial number data contained within an X509 certificate. However it fails to correctly handle any errors that may occur while parsing the issuer field (which might occur if the issuer field is maliciously constructed). This may subsequently result in a NULL pointer deref and a crash leading to a potential denial of service attack. The function X509_issuer_and_serial_hash() is never directly called by OpenSSL itself so applications are only vulnerable if they use this function directly and they use it on certificates that may have been obtained from untrusted sources. OpenSSL versions 1.1.1i and below are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1j. OpenSSL versions 1.0.2x and below are affected by this issue. However OpenSSL 1.0.2 is out of support and no longer receiving public updates. Premium support customers of OpenSSL 1.0.2 should upgrade to 1.0.2y. Other users should upgrade to 1.1.1j. Fixed in OpenSSL 1.1.1j (Affected 1.1.1-1.1.1i). Fixed in OpenSSL 1.0.2y (Affected 1.0.2-1.0.2x).
CVE-2021-35534 0.0 unknown
A vulnerability exists in the database schema inside the product. An attacker could exploit the vulnerability by first gaining access to credentials of any account or to have access to a session ticket issued for an account. After that, via the configuration tool that accesses the proprietary Open Database Connectivity (ODBC) protocol (TCP 2102), the database table can be manipulated for privilege escalation which then allowed unauthorized modification or to permanently disabling of the device.
CVE-2026-32777 0.0 unknown
CVE-2026-32777. CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop'). libexpat before 2.7.5 allows an infinite loop while parsing DTD content, causing Denial of Service impact. Product is only affected if IEC 61850 functionality is configured.
CVE-2022-3929 0.0 unknown
Communication between the client (UNEM User Interface) and the server application (UNEM Core) partially uses common object request broker architecture (CORBA) over TCP/IP. This protocol is not encrypted and could allow an unauthorized user to trace internal messages.-CVE-2022-3929 has been assigned to this vulnerability. A CVSS v3 base score of 8.3 has been calculated; the CVSS vector string is (AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H).
CVE-2021-40336 0.0 unknown
The affected product is vulnerable to HTTP response splitting, which if exploited, could lead an attacker to inject harmful code into the user 's web browser for purposes such as stealing session cookies.CVE-2021-40336 has been assigned to this vulnerability. A CVSS v3 base score of 5.0 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L).
CVE-2022-3602 0.0 unknown
CVE-2022-3602. A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification and requires either a CA to have signed the malicious certificate or for the application to continue certificate verification despite failure to construct a path to a trusted issuer. An attacker can craft a malicious email address to overflow four attacker-controlled bytes on the stack. This buffer overflow could result in a crash (causing a denial of service) or potentially remote code execution. Many platforms implement stack overflow protections which would mitigate against the risk of remote code execution. The risk may be further mitigated based on stack layout for any given platform/compiler. Pre-announcements of CVE-2022-3602 described this issue as CRITICAL. Further analysis based on some of the mitigating factors described above have led this to be downgraded to HIGH. Users are still encouraged to upgrade to a new version as soon as possible. In a TLS client, this can be triggered by connecting to a malicious server. In a TLS server, this can be triggered if the server requests client authentication and a malicious client connects. Fixed in OpenSSL 3.0.7 (Affected 3.0.0,3.0.1,3.0.2,3.0.3,3.0.4,3.0.5,3.0.6).
CVE-2022-3686 0.0 unknown
A vulnerability exists in the affected SDM600 versions API permission check mechanism. Successful exploitation could cause an unauthenticated user to gain access to device data, causing confidentiality and integrity issues. CVE-2022-3686 has been assigned to this vulnerability. A CVSS v3 base score of 4.8 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L).
CVE-2024-3982 0.0 unknown
An attacker with local access to machine where MicroSCADA X SYS600 is installed, could enable the session logging supporting the product and try to exploit a session hijacking of an already established session. By default, the session logging level is not enabled and only users with administrator rights can enable it.
CVE-2016-6306 0.0 unknown
CVE-2016-6306. The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote attackers to cause a denial of service (out-of-bounds read) via crafted certificate operations, related to s3_clnt.c and s3_srvr.c.
CVE-2019-12258 0.0 unknown
An attacker with the source and destination TCP-port and IP-addresses of a session can inject invalid TCP-segments into the flow, causing the TCP-session to be reset. An application will see this as an ECONNRESET error message when using the socket after such an attack. The most likely outcome is a crash of the application reading from the affected socket.
CVE-2020-35198 0.0 unknown
CVE-2020-35198. An issue was discovered in Wind River VxWorks 7. The memory al-locator has a possible integer overflow in calculating a memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.
CVE-2024-7941 0.0 unknown
An HTTP parameter may contain a URL value and could cause the web application to redirect the request to the specified URL. By modifying the URL value to a malicious site, an attacker may successfully launch a phishing scam and steal user credentials.
CVE-2022-2513 0.0 unknown
A vulnerability exists in the Intelligent Electronic Device (IED) Connectivity Package (ConnPack) credential storage function in Hitachi Energy's PCM600 product included in the versions listed below, where IEDs credentials are stored in a cleartext format in the PCM600 database and logs files. An attacker having get access to the exported backup file can exploit the vulnerability and obtain user credentials of the IEDs. Additionally, an attacker with administrator access to the PCM600 host machine can obtain other user credentials by analyzing database log files. The credentials may be used to perform unauthorized modifications such as loading incorrect configurations, reboot the IEDs or cause a denial-of-service on the IEDs.
CVE-2021-41615 0.0 unknown
Websda.c in GoAhead WebServer 2.1.8 has insufficient nonce entropy due to the nonce calculation relying on the hardcoded onceuponatimeinparadise value, which does not follow the secret-data guideline for HTTP digest access authentication in RFC 7616 section 3.3 (or RFC 2617 section 3.2.1).Note: 2.1.8 is a version from 2003; however, the affected websda.c code appears in derivative works that may be used in 2021. Recent GoAhead software is unaffected. CVE-2021-41615 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2022-4450 0.0 unknown
CVE-2022-4450. The function PEM_read_bio_ex() reads a PEM file from a BIO and parses and decodes the "name" (e.g. "CERTIFICATE"), any header data and the payload data. If the function succeeds then the "name_out", "header" and "data" arguments are populated with pointers to buffers containing the relevant decoded data. The caller is responsible for freeing those buffers. It is possible to construct a PEM file that results in 0 bytes of payload data. In this case PEM_read_bio_ex() will return a failure code but will populate the header argument with a pointer to a buffer that has already been freed. If the caller also frees this buffer then a double free will occur. This will most likely lead to a crash. This could be exploited by an attacker who has the ability to supply malicious PEM files for parsing to achieve a denial of service attack. The functions PEM_read_bio() and PEM_read() are simple wrappers around PEM_read_bio_ex() and therefore these functions are also directly affected. These functions are also called indirectly by a number of other OpenSSL functions including PEM_X509_INFO_read_bio_ex() and SSL_CTX_use_serverinfo_file() which are also vulnerable. Some OpenSSL internal uses of these functions are not vulnerable because the caller does not free the header argument if PEM_read_bio_ex() returns a failure code. These locations include the PEM_read_bio_TYPE() functions as well as the decoders introduced in OpenSSL 3.0. The OpenSSL asn1parse command line application is also impacted by this issue.
CVE-2026-32776 0.0 unknown
CVE-2026-32776. CWE-476: NULL Pointer Dereference. libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content, causing Denial of Service impact. Product is only affected if IEC 61850 functionality is configured.
CVE-2025-1037 0.0 unknown
By making minor configuration changes to the TropOS 4th Gen device, an authenticated user with the ability to run user-level shell commands can enable access via secure shell (SSH) to an unrestricted root shell. This is possible through abuse of a particular set of scripts and executables that allow for certain commands to be run as root from an unprivileged context.
CVE-2018-10933 0.0 unknown
An attacker can send a specially crafted message to the device causing it to open a communication channel without first performing authentication, which may allow an attacker to execute arbitrary commands.CVE-2018-10933 has been assigned to this vulnerability. A CVSS v3 base score of 9.1 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).
CVE-2020-15705 0.0 unknown
GRUB2 fails to validate kernel signature when booted directly without shim, allowing secure boot to be bypassed. This only affects systems where the kernel signing certificate has been imported directly into the secure boot database and the GRUB image is booted directly without the use of shim. This issue affects GRUB2 version 2.04 and prior versions.
CVE-2025-39204 0.0 unknown
Filtering query in MicroSCADA X SYS600 can be malformed, so returning data can leak any file content.
CVE-2020-15706 0.0 unknown
GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing, leading to arbitrary code execution and secure boot restriction bypass. This issue affects GRUB2 version 2.04 and prior versions.
CVE-2022-3928 0.0 unknown
In the message queue of affected Hitachi Energy UNEM products contains a hard-coded credential. An attacker that exploits this vulnerability could access data inside the internal message queue.-CVE-2022-3928 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N).
CVE-2017-13081 0.0 unknown
No description available.
CVE-2024-2011 0.0 unknown
A heap-based buffer overflow vulnerability exists in the FOXMAN-UN that if exploited will generally lead to a denial of service but can be used to execute arbitrary code, which is usually outside the scope of a program's implicit security policy.
CVE-2019-19094 0.0 unknown
CVE-2019-19094. Lack of input checks for SQL queries in ABB eSOMS Versions 6.0.3 and earlier might allow an attacker SQL injection attacks against the backend database. CVE-2019-19094 has been assigned to this vulnerability. A CVSS v3 base score of 7.6 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L).
CVE-2022-44729 0.0 unknown
CVE-2022-44729. Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik. This issue affects Apache XML Graphics Batik: 1.16. On version 1.16, a malicious SVG could trigger loading external resources by default, causing resource consumption or in some cases even information disclosure.
CVE-2021-43298 0.0 unknown
The code that performs password matching when using 'basic' HTTP authentication does not use a constant-time memcmp and has no rate-limiting. An unauthenticated network attacker could brute-force the HTTP basic password byte-by-byte, by recording the webserver's response time until the unauthorized (401) response. CVE-2021-43298 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2021-35526 0.0 unknown
The application does not encrypt backup files. A local operating system user can modify backup files, which may allow an attacker to overwrite system configuration files and gain privileges.CVE-2021-35526 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L).
CVE-2016-9586 0.0 unknown
No description available.
CVE-2018-0739 0.0 unknown
CVE-2018-0739. Constructed ASN.1 types with a recursive definition (such as can be found in PKCS7) could eventually exceed the stack given malicious input with excessive recursion. This could result in a Denial Of Service attack. There are no such structures used within SSL/TLS that come from untrusted sources so this is considered safe. Fixed in OpenSSL 1.1.0h (Affected 1.1.0-1.1.0g). Fixed in OpenSSL 1.0.2o (Affected 1.0.2b-1.0.2n).
CVE-2021-45046 0.0 unknown
CVE-2021-45046. The fix to address CVE-2021-44228 was incomplete in certain non-default configurations, when the logging configuration uses a non-default Pattern Layout with a Context Lookup (for example, ${ctx:loginId}). This could allow attackers with control over Thread Context Map (MDC) input data to craft malicious input data using a JNDI Lookup pattern, resulting in an information leak and remote code execution in some environments and local code execution in all environments.
CVE-2022-2155 0.0 unknown
Hitachi Energy Lumada APM has a flaw in the access control mechanism implementation on the “Limited Engineer” role, granting access to the embedded Power BI reports feature. This could allow an unauthorized user to access information by gaining unauthorized access to any installed Power BI reports, then manipulating asset issue comments on assets that should not be available to that user.-CVE-2022-2155 has been assigned to this vulnerability. A CVSS v3 base score of 5.7 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N).
CVE-2021-27414 0.0 unknown
An attacker could trick a user into visiting a malicious website posing as a login page for the Ellipse application and gather authentication credentials.CVE-2021-27414 has been assigned to this vulnerability. A CVSS v3 base score of 5.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L).
CVE-2019-11477 0.0 unknown
TCP_SKB_CB(skb)->tcp_gso_segs value is subject to an integer overflow in the Linux kernel when handling TCP selective acknowledgments (SACKs). A remote attacker could use this to cause a denial of service. This has been fixed in stable kernel releases 4.4.182, 4.9.182, 4.14.127, 4.19.52, 5.1.11, and is fixed in commit.
CVE-2018-0737 0.0 unknown
No description available.
CVE-2021-27416 0.0 unknown
An attacker could exploit this vulnerability by tricking a user to click on a link containing malicious code that would then be run by the web browser. This can result in the compromise of confidential information, or even the takeover of the user 's session.CVE-2021-27416 has been assigned to this vulnerability. A CVSS v3 base score of 5.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L).
CVE-2021-23840 0.0 unknown
CVE-2021-23840. Calls to EVP_CipherUpdate, EVP_EncryptUpdate and EVP_DecryptUpdate may overflow the output length argument in some cases where the input length is close to the maximum permissable length for an integer on the platform. In such cases the return value from the function call will be 1 (indicating success), but the output length value will be negative. This could cause applications to behave incorrectly or crash. OpenSSL versions 1.1.1i and below are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1j. OpenSSL versions 1.0.2x and below are affected by this issue. However OpenSSL 1.0.2 is out of support and no longer receiving public updates. Premium support customers of OpenSSL 1.0.2 should upgrade to 1.0.2y. Other users should upgrade to 1.1.1j. Fixed in OpenSSL 1.1.1j (Affected 1.1.1-1.1.1i). Fixed in OpenSSL 1.0.2y (Affected 1.0.2-1.0.2x).
CVE-2023-2953 0.0 unknown
A vulnerability has been identified in the openLDAP library used in Central Account Management (CAM) client. This issue can lead to a Denial of Service (DoS) condition when a specially crafted request may cause a null pointer to dereference, resulting in affected CMU to automatically recovering itself by rebooting.
CVE-2021-3518 0.0 unknown
CVE-2021-3518. There's a flaw in libxml2 in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by an application linked with libxml2 could trigger a use-after-free. The greatest impact from this flaw is to confidentiality, integrity, and availability.
CVE-2023-2625 0.0 unknown
No description available.
CVE-2024-22262 0.0 unknown
CVE-2024-22262. Applications that use UriComponentsBuilder to parse an externally provided URL (e.g. through a query parameter) AND perform validation checks on the host of the parsed URL may be vulnerable to a open redirect attack or to a SSRF attack if the URL is used after passing validation checks.
CVE-2019-19097 0.0 unknown
CVE-2019-19097. ABB eSOMS Versions 6.0.3 and earlier accept connections using medium strength ciphers. If a connection is enabled using such a cipher, an attacker might be able to eavesdrop and/or intercept the connection. CVE-2019-19097 has been assigned to this vulnerability. A CVSS v3 base score of 5.9 has been assigned; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N).
CVE-2020-2883 0.0 unknown
CVE-2020-2883. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server.
CVE-2023-5516 0.0 unknown
Poorly constructed webap requests and URI components with special characters trigger unhandled errors and exceptions, disclosing information about the underlying technology and other sensitive information details. The website unintentionally reveals sensitive information including technical details like version Info, endpoints, backend server, Internal IP. etc., which could expose additional attack surface containing other vulnerabilities.
CVE-2019-18998 0.0 unknown
There is a flaw in the access controls used to limit user access to resources. If an attacker knows, or were to discover, the URL for a resource they do not have permissions to, they would be able to access the resource by browsing directly to the URL.CVE-2019-18998 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N).
CVE-2022-41678 0.0 unknown
CVE-2022-41678. In Apache ActiveMQ, once a user is authenticated on Jolokia, he can potentially trigger arbitrary code execution. In details, in ActiveMQ configurations, jetty allows org.jolokia.http.AgentServlet to handle request to /api/jolokia org.jolokia.http.HttpRequestHandler#handlePostRequest is able to create JmxRequest through JSONObject. And calls to org.jolokia.http.HttpRequestHandler#executeRequest. Into deeper calling stacks, org.jolokia.handler.ExecHandler#doHandleRequest can be invoked through reflection. This could lead to RCE through via various mbeans.
CVE-2021-40339 0.0 unknown
The LinkOne application is lacking HTTP Headers, allowing an attacker to retrieve sensitive information.CVE-2021-40339 has been assigned to this vulnerability. A CVSS v3 base score of 3.7 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
CVE-2021-4104 0.0 unknown
No description available.
CVE-2021-3516 0.0 unknown
CVE-2021-3516. There's a flaw in libxml2's xmllint in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by xmllint could trigger a use-after-free. The greatest impact of this flaw is to confidentiality, integrity, and availability.
CVE-2026-2460 0.0 unknown
CVE-2026-2460. A vulnerability exists in REB500 for an authenticated user with low-level privileges to access and alter the content of directories by using the DAC protocol that the user is not authorized to do so.
CVE-2022-22950 0.0 unknown
A vulnerability exists in the Spring Framework component included in the Prognostic Model Executor service of the affected product. An attacker could exploit this vulnerability by sending a specially crafted data or configuration to the application either directly or via integrated applications, causing the Prognostic Model Executor service to fail.CVE-2022-22950 has been assigned to this vulnerability. A CVSS v3 base score of 3.1 has been assigned; the CVSS vector string is (AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L).
CVE-2022-22823 0.0 unknown
CVE-2022-22823. build_model in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2020-28895 0.0 unknown
In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated by calloc(). As a result, the actual memory allocated is smaller than the buffer size specified by the arguments, leading to memory corruption.
CVE-2019-12261 0.0 unknown
The impact of this vulnerability is a buffer overflow of up to a full TCP receive-window (by default, 10k-64k depending on version). The buffer overflow happens in the task calling recv()/recvfrom()/recvmsg(). Applications that pass a buffer equal to or larger than a full TCP-window are not susceptible to this attack. Applications passing a stack-allocated variable as a buffer are the easiest to exploit. The most likely outcome is a crash of the application reading from the affected socket, which could result in remote code execution.
CVE-2016-4516 0.0 unknown
ABB PCM600 before 2.7 improperly stores the main application password after a password change, which allows local users to obtain sensitive information via unspecified vectors.
CVE-2019-12259 0.0 unknown
This vulnerability requires that at least one IPv4 multicast address has been assigned to the target in an incorrect way (e.g., using the API intended for assigning unicast-addresses). An attacker may use CVE-2019-12264 to incorrectly assign a multicast IP-address. An attacker on the same LAN as the target system may use this vulnerability to cause a NULL-pointer dereference, which most likely will crash the tNet0 task.
CVE-2021-22278 0.0 unknown
This vulnerability exists due to a logic error in the certificate validation in the affected product. An attacker with administrator rights could exploit this vulnerability by creating software packages and signing those packages with specially crafted certificates, thereby pointing the PCM600 update server location to a different location. The validation flaw causes untrusted software packages to be installed using PCM600 Update Manager.CVE-2021-22278 has been assigned to this vulnerability. A CVSS v3 base score of 6.7 has been calculated; the CVSS vector string is (AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H).
CVE-2023-28388 0.0 unknown
Uncontrolled search path element in some Intel(R) Chipset Device Software before version 10.1.19444.8378 may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2020-24587 0.0 unknown
The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that all fragments of a frame are encrypted under the same key. An adversary can abuse this to decrypt selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP encryption key is periodically renewed.
CVE-2026-1773 0.0 unknown
CVE-2026-1773. IEC 60870-5-104: Potential Denial of Service impact on reception of invalid U-format frame. Product is only affected if IEC 60870-5-104 bi-directional functionality is configured. Enabling secure communication following IEC 62351-3 does not remediate the vulnerability but mitigates the risk of exploitation.
CVE-2023-5768 0.0 unknown
A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious actor could perform cross-site scripting on the webserver due to user input being improperly sanitized.
CVE-2023-5767 0.0 unknown
A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious actor could perform cross-site scripting on the webserver due to an RDT language file being improperly sanitized.
CVE-2018-10811 0.0 unknown
No description available.
CVE-2025-1718 0.0 unknown
CVE-2025-1718. An authenticated user with file access privilege via FTP access can cause the Relion 670/650 and SAM600-IO series device to reboot due to improper disk space management.
CVE-2017-13078 0.0 unknown
No description available.
CVE-2023-5514 0.0 unknown
The response messages received from the eSOMS report generation using certain parameter queries with full file path can be abused for enumerating the local file system structure.
CVE-2024-1532 0.0 unknown
A vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor could enforce diagnostic texts being displayed as empty strings, if an authorized user uploads a specially crafted stb-language file.
CVE-2022-29404 0.0 unknown
No description available.
CVE-2018-0732 0.0 unknown
CVE-2018-0732. During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack.
CVE-2016-2147 0.0 unknown
No description available.
CVE-2022-23937 0.0 unknown
A vulnerability exists in the Wind River VxWorks version 6.9 affecting the RTU500 series product versions listed. An attacker could exploit the vulnerability by using a specific crafted packet that could lead to an out-of-bounds read during an IKE initial exchange scenario.
CVE-2025-1445 0.0 unknown
CVE-2025-1445. A vulnerability exists in RTU IEC 61850 client and server functionality that could impact the availability if renegotiation of an open IEC61850 TLS connection takes place in specific timing situations, when IEC61850 communication is active. Precondition is that IEC61850 as client or server are configured using TLS on RTU500 device. It affects the CMU the IEC61850 stack is configured on.
CVE-2017-12821 0.0 unknown
No description available.
CVE-2025-2500 0.0 unknown
A vulnerability exists in the SOAP Web services of the Asset Suite versions listed below. If successfully exploited, an attacker could gain unauthorized access to the product and the time window of a possible password attack could be expanded.
CVE-2024-28023 0.0 unknown
A vulnerability exists in the message queueing mechanism that if exploited can lead to the exposure of resources or functionality to unintended actors, possibly providing malicious users with sensitive information or even execute arbitrary code.
CVE-2017-12818 0.0 unknown
No description available.
CVE-2025-39203 0.0 unknown
A vulnerability exists in the IEC 61850 of the MACH GWS product. An IEC 61850-8 crafted message content from IED or remote system can cause a denial of service resulting in disconnection loop.
CVE-2016-8619 0.0 unknown
No description available.
CVE-2025-23184 0.0 unknown
CVE-2025-23184. A potential denial of service vulnerability is present in versions of Apache CXF before 3.5.10, 3.6.5 and 4.0.6. In some edge cases, the CachedOutputStream instances may not be closed and, if backed by temporary files, may fill up the file system (it applies to servers and clients).
CVE-2024-2617 0.0 unknown
CVE-2024-2617. A vulnerability exists in the RTU500 that allows for authenticated and authorized users to bypass secure update, if secure update feature was not enabled on all CMUs of a RTU500. If a malicious actor successfully exploits this vulnerability, they could use it to update the RTU500 with unsigned firmware.
CVE-2020-24586 0.0 unknown
The affected product is vulnerable to a fragment cache attack as it does not clear fragments from memory when (re)connecting. This may allow an attacker to steal communication contents or inject unauthorized packets. CVE-2020-24586 has been assigned to this vulnerability. A CVSS v3 base score of 3.5 has been assigned; the CVSS vector string is (AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N).
CVE-2011-4273 0.0 unknown
No description available.
CVE-2022-1778 0.0 unknown
A vulnerability exists during the start of GWS in which an input validation flaw, causing a buffer overflow while reading a specific configuration file. Subsequently, GWS will fail to start. The configuration file can only be accessed by users with administrator access. CVE-2022-1778 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2017-9248 0.0 unknown
Telerik.Web.UI.dll in Progress Telerik UI for ASP.NET AJAX before R2 2017 SP1 and Sitefinity before 10.0.6412.0 does not properly protect Telerik.Web.UI.DialogParametersEncryptionKey or the MachineKey, which makes it easier for remote attackers to defeat cryptographic protection mechanisms, leading to a MachineKey leak, arbitrary file uploads or downloads, XSS, or ASP.NET ViewState compromise.CVE-2017-9248 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2021-46143 0.0 unknown
CVE-2021-46143. In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize.
CVE-2023-6378 0.0 unknown
CVE-2023-6378. A serialization vulnerability in logback receiver component part of logback version 1.4.11 allows an attacker to mount a Denial-Of-Service attack by sending poisoned data. This vulnerability affects logback versions prior to 1.2.13, 1.3.12 and 1.4.12.
CVE-2014-2217 0.0 unknown
Absolute path traversal vulnerability in the RadAsyncUpload control in the RadControls in Telerik UI for ASP.NET AJAX before Q3 2012 SP2 allows remote attackers to write to arbitrary files, and consequently execute arbitrary code, via a full pathname in the UploadID metadata value.CVE-2014-2217 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N).
CVE-2017-12822 0.0 unknown
No description available.
CVE-2023-48795 0.0 unknown
CVE-2023-48795. Remote attackers may bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabled, aka a Terrapin attack.
CVE-2022-3927 0.0 unknown
Affected Hitachi Energy UNEM products contain public and private keys used to sign and protect custom parameter set (CPS) files from modification. An attacker exploiting this vulnerability could change the CPS file and sign it, so that it is trusted as the legitimate CPS file.-CVE-2022-3927 has been assigned to this vulnerability. A CVSS v3 base score of 8.0 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H).
CVE-2014-3707 0.0 unknown
No description available.
CVE-2019-12822 0.0 unknown
In http.c in Embedthis GoAhead before 4.1.1 and 5.x before 5.0.1, a header parsing vulnerability causes a memory assertion, out-of-bounds memory reference, and a potential denial-of-service condition, as demonstrated by a single colon on a line. CVE-2019-12822 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2026-32778 0.0 unknown
CVE-2026-32778. CWE-476: NULL Pointer Dereference. libexpat before 2.7.5 allows a NULL pointer dereference in the function setContext on retry after an earlier out-of-memory condition, causing Denial of Service impact. Product is only affected if IEC 61850 functionality is configured.
CVE-2020-26147 0.0 unknown
CVE-2020-26147. An issue was discovered in the Linux kernel 5.8.9. The WEP, WPA, WPA2, and WPA3 implementations reassemble fragments even though some of them were sent in plaintext. This vulnerability can be abused to inject packets and/or exfiltrate selected fragments when another device sends fragmented frames and the WEP, CCMP, or GCMP data-confidentiality protocol is used.
CVE-2023-2622 0.0 unknown
Authenticated clients can read arbitrary files on the MAIN Computer system using the remote procedure call (RPC) of the InspectSetup service endpoint. The low privilege client is then allowed to read arbitrary files that they do not have authorization to read.
CVE-2020-15707 0.0 unknown
Integer overflows were discovered in the functions grub_cmd_initrd and grub_initrd_init in the efilinux component of GRUB2, as shipped in Debian, Red Hat, and Ubuntu (the functionality is not included in GRUB2 upstream), leading to a heap-based buffer overflow. These could be triggered by an extremely large number of arguments to the initrd command on 32-bit architectures, or a crafted filesystem with very large files on any architecture. An attacker could use this to execute arbitrary code and bypass UEFI Secure Boot restrictions. This issue affects GRUB2 version 2.04 and prior versions.
CVE-2017-13086 0.0 unknown
No description available.
CVE-2014-4958 0.0 unknown
Cross-site scripting (XSS) vulnerability in Telerik UI for ASP.NET AJAX RadEditor control 2014.1.403.35, 2009.3.1208.20, and other versions allows remote attackers to inject arbitrary web script or HTML via CSS expressions in style attributes.CVE-2014-4958 has been assigned to this vulnerability. A CVSS v3 base score of 4.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N).
CVE-2021-3541 0.0 unknown
CVE-2021-3541. A flaw was found in libxml2. Exponential entity expansion attack its possible bypassing all existing protection mechanisms and leading to denial of service.
CVE-2022-29922 0.0 unknown
A vulnerability exists in the handling of specially crafted IEC 61850 packets with a valid data item but incorrect data type in the IEC 61850 OPC Server. The vulnerability may cause a denial-of-service condition on the IEC 61850 OPC Server component of the GWS product. CVE-2022-29922 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2025-7740 0.0 unknown
CVE-2025-7740. A default credentials vulnerability exists in the SuprOS product. If exploited, this could allow an authenticated local attacker to gain access through an admin account created during product deployment.
CVE-2016-8621 0.0 unknown
No description available.
CVE-2024-0400 0.0 unknown
CVE-2024-0400. SCM Software is a client and server application. An Authenticated System manager client can execute LINQ query in the SCM server, for customized filtering. An Authenticated malicious client can send a specially crafted code to skip the validation and execute arbitrary code (RCE) on the SCM Server remotely. Malicious clients can execute any command by using this RCE vulnerability.
CVE-2021-32027 0.0 unknown
A vulnerability exists when Hitachi Energy MicroSCADA X DMS600 v4.5 uses an affected version of PostgreSQL. While modifying certain SQL array values, missing bounds checks let authenticated database users write arbitrary bytes to a wide area of server memory. Successful exploitation of this vulnerability could allow attackers to gain access to the data, causing confidentiality and integrity issues.CVE-2021-32027 has been assigned to this vulnerability. A CVSS v3 base score of 8.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).
CVE-2022-23852 0.0 unknown
CVE-2022-23852. Expat (aka libexpat) before 2.4.4 has a signed integer overflow in XML_GetBuffer, for configurations with a nonzero XML_CONTEXT_BYTES.
CVE-2024-2398 0.0 unknown
CVE-2024-2398. When an application tells libcurl it wants to allow HTTP/2 server push, and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push. When aborting, libcurl inadvertently does not free all the previously allocated headers and instead leaks the memory. Further, this error condition fails silently and is therefore not easily detected by an application.
CVE-2017-13079 0.0 unknown
No description available.
CVE-2018-5381 0.0 unknown
No description available.
CVE-2017-13082 0.0 unknown
No description available.
CVE-2023-0401 0.0 unknown
A NULL pointer can be dereferenced when signatures are being verified on PKCS7 signed or signedAndEnveloped data. In case the hash algorithm used for the signature is known to the OpenSSL library but the implementation of the hash algorithm is not available the digest initialization will fail. There is a missing check for the return value from the initialization function which later leads to invalid usage of the digest API most likely leading to a crash. The unavailability of an algorithm can be caused by using FIPS enabled configuration of providers or more commonly by not loading the legacy provider. PKCS7 data is processed by the SMIME library calls and also by the time stamp (TS) library calls. The TLS implementation in OpenSSL does not call these functions however third party applications would be affected if they call these functions to verify signatures on untrusted data.
CVE-2021-35528 0.0 unknown
A flaw in the application authentication and authorization mechanism that depends on local validation of the session identifier allows an unauthorized, signed Java Applet JAR file to be executed.CVE-2021-35528 has been assigned to this vulnerability. A CVSS v3 base score of 7.2 has been calculated; the CVSS vector string is (AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N).
CVE-2023-43622 0.0 unknown
CVE-2023-43622. An attacker, opening a HTTP/2 connection with an initial window size of 0, was able to block handling of that connection indefinitely in Apache HTTP Server. This could be used to exhaust worker resources in the server, similar to the well known "slow loris" attack pattern. This has been fixed in version 2.4.58, so that such connection are terminated properly after the configured connection timeout. This issue affects Apache HTTP Server: from 2.4.55 through 2.4.57. Users are recommended to upgrade to version 2.4.58, which fixes the issue.
CVE-2019-19095 0.0 unknown
CVE-2019-19095. Lack of adequate input/output validation for ABB eSOMS Versions 6.0.2 and earlier might allow an attacker to attack, such as stored cross-site scripting by storing malicious content in the database. CVE-2019-19095 has been assigned to this vulnerability. A CVSS v3 base score of 5.4 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).
CVE-2021-3712 0.0 unknown
CVE-2021-3712. ASN.1 strings are represented internally within OpenSSL as an ASN1_STRING structure which contains a buffer holding the string data and a field holding the buffer length. This contrasts with normal C strings which are repesented as a buffer for the string data which is terminated with a NUL (0) byte. Although not a strict requirement, ASN.1 strings that are parsed using OpenSSL's own "d2i" functions (and other similar parsing functions) as well as any string whose value has been set with the ASN1_STRING_set() function will additionally NUL terminate the byte array in the ASN1_STRING structure. However, it is possible for applications to directly construct valid ASN1_STRING structures which do not NUL terminate the byte array by directly setting the "data" and "length" fields in the ASN1_STRING array. This can also happen by using the ASN1_STRING_set0() function. Numerous OpenSSL functions that print ASN.1 data have been found to assume that the ASN1_STRING byte array will be NUL terminated, even though this is not guaranteed for strings that have been directly constructed. Where an application requests an ASN.1 structure to be printed, and where that ASN.1 structure contains ASN1_STRINGs that have been directly constructed by the application without NUL terminating the "data" field, then a read buffer overrun can occur. The same thing can also occur during name constraints processing of certificates (for example if a certificate has been directly constructed by the application instead of loading it via the OpenSSL parsing functions, and the certificate contains non NUL terminated ASN1_STRING structures). It can also occur in the X509_get1_email(), X509_REQ_get1_email() and X509_get1_ocsp() functions. If a malicious actor can cause an application to directly construct an ASN1_STRING and then process it through one of the affected OpenSSL functions then this issue could be hit. This might result in a crash (causing a Denial of Service attack). It could also result in the disclosure of private memory contents (such as private keys, or sensitive plaintext). Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k). Fixed in OpenSSL 1.0.2za (Affected 1.0.2-1.0.2y).
CVE-2022-30556 0.0 unknown
No description available.
CVE-2016-4511 0.0 unknown
ABB PCM600 before 2.7 uses an improper hash algorithm for the main application password, which makes it easier for local users to obtain sensitive cleartext information by leveraging read access to the ACTConfig configuration file.
CVE-2021-32028 0.0 unknown
A vulnerability exists when Hitachi Energy MicroSCADA X DMS600 v4.5 uses an affected version of PostgreSQL. When using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an authenticated database user could read arbitrary bytes of server memory.CVE-2021-32028 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).
CVE-2021-45960 0.0 unknown
CVE-2021-45960. In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
CVE-2020-27779 0.0 unknown
A flaw was found in grub2 in versions prior to 2.06. The cutmem command does not honor secure boot locking allowing an privileged attacker to remove address ranges from memory creating an opportunity to circumvent SecureBoot protections after proper triage about grub's memory layout. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2017-11357 0.0 unknown
Progress Telerik UI for ASP.NET AJAX before R2 2017 SP2 does not properly restrict user input to RadAsyncUpload, which allows remote attackers to perform arbitrary file uploads or execute arbitrary code.CVE-2017-11357 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2022-25235 0.0 unknown
CVE-2022-25235. xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.
CVE-2021-40342 0.0 unknown
Affected Hitachi Energy UNEM products use a DES implementation with a default key for encryption. An attacker that exploits this vulnerability could obtain sensitive information and gain access to the network elements managed by the UNEM.-CVE-2021-40342 has been assigned to this vulnerability. A CVSS v3 base score of 7.1 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N).
CVE-2025-10217 0.0 unknown
A vulnerability exists in Asset Suite for an authenticated user to manipulate the content of performance related log data or to inject crafted data in logfile for potentially carrying out further malicious attacks. Performance logging is typically enabled for troubleshooting purposes while resolving application performance related issues.
CVE-2021-3449 0.0 unknown
CVE-2021-3449. An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension (where it was present in the initial ClientHello), but includes a signature_algorithms_cert extension then a NULL pointer dereference will result, leading to a crash and a denial of service attack. A server is only vulnerable if it has TLSv1.2 and renegotiation enabled (which is the default configuration). OpenSSL TLS clients are not impacted by this issue. All OpenSSL 1.1.1 versions are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1k. OpenSSL 1.0.2 is not impacted by this issue. Fixed in OpenSSL 1.1.1k (Affected 1.1.1-1.1.1j).
CVE-2020-13817 0.0 unknown
ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 could allow remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets. The victim must rely on unauthenticated IPv4 time sources. There must be an off-path attacker who could query time from the victim's ntpd instance.
CVE-2019-19092 0.0 unknown
CVE-2019-19092. ABB eSOMS Versions 6.0.3 and earlier use ASP.NET Viewstate without Message Authentication Code (MAC). Alterations to Viewstate might thus not be noticed. CVE-2019-19092 has been assigned to this vulnerability. A CVSS v3 base score of 3.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N).
CVE-2023-45802 0.0 unknown
CVE-2023-45802. When a HTTP/2 stream was reset (RST frame) by a client, there was a time window were the request's memory resources were not reclaimed immediately. Instead, de-allocation was deferred to connection close. A client could send new requests and resets, keeping the connection busy and open and causing the memory footprint to keep on growing. On connection close, all resources were reclaimed, but the process might run out of memory before that. This was found by the reporter during testing of CVE-2023-44487 (HTTP/2 Rapid Reset Exploit) with their own test client. During "normal" HTTP/2 use, the probability to hit this bug is very low. The kept memory would not become noticeable before the connection closes or times out. Users are recommended to upgrade to version 2.4.58, which fixes the issue.
CVE-2023-25690 0.0 unknown
CVE-2023-25690. Vulnerability in Apache HTTP Server versions 2.4.0 through 2.4.55. It involves HTTP Request Smuggling due to certain mod_proxy configurations combined with RewriteRule or ProxyPassMatch directives. This flaw can lead to bypassing access controls by an authenticated attacker.
CVE-2021-27887 0.0 unknown
A stored XSS vulnerability in the main dashboard of Ellipse APM versions prior to 5.3.0.1, 5.2.0.3, and 5.1.0.6 allows an authenticated user or integrated application to inject malicious data into the application that can then be executed in a victim 's browser.CVE-2021-27887 has been assigned to this vulnerability. A CVSS v3 base score of 6.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N).
CVE-2025-69421 0.0 unknown
CVE-2025-69421. CWE-476: NULL Pointer Dereference. Issue summary: Processing a malformed PKCS#12 file can trigger a NULL pointer dereference in the PKCS12_item_decrypt_d2i_ex() function. Impact summary: A NULL pointer dereference can trigger a crash which leads to Denial of Service for an application processing PKCS#12 files. The PKCS12_item_decrypt_d2i_ex() function does not check whether the oct parameter is NULL before dereferencing it. When called from PKCS12_unpack_p7encdata() with a malformed PKCS#12 file, this parameter can be NULL, causing Denial of Service impact. The vulnerability is limited to Denial of Service and cannot be escalated to achieve code execution or memory disclosure. Product is affected, if a privileged user uploads a malformed PKCS#12 certificate via web interface or if PKI client functionality is configured.
CVE-2020-36230 0.0 unknown
CVE-2020-36230. A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service.
CVE-2020-36229 0.0 unknown
CVE-2020-36229. A flaw was discovered in ldap_X509dn2bv in OpenLDAP before 2.4.57 leading to a slapd crash in the X.509 DN parsing in ad_keystring, resulting in denial of service.
CVE-2026-7310 0.0 unknown
CVE-2026-7310. A heap-based buffer overflow vulnerability exists in XML parser functionality in the HiDraw. An authenticated malicious user with local access can exploit this vulnerability using a specially crafted XML file which may lead to memory corruption and potential arbitrary code execution. Successful exploitation could result in application crashes (denial of service) and compromise the confidentiality and integrity of the affected system.
CVE-2020-9307 0.0 unknown
A crafted HSR frame can cause a denial-of-service condition on one of the ports in a HSR ring.CVE-2020-9307 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been calculated; the CVSS vector string is (AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2019-12262 0.0 unknown
An attacker residing on the LAN can send reverse-ARP responses to the victim system to assign unicast IPv4 addresses to the target.
CVE-2021-40338 0.0 unknown
When an error happens during the query operation in the application due to a misconfiguration in the web server configuration file, debug mode in LinkOne application is activated and shows the full path of the directory.CVE-2021-40338 has been assigned to this vulnerability. A CVSS v3 base score of 3.7 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
CVE-2020-11022 0.0 unknown
In jQuery versions greater than or equal to 1.2 and before 3.5.0, passing HTML from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code.
CVE-2024-2013 0.0 unknown
An authentication bypass vulnerability exists in the FOXMAN-UN server / APIGateway component that if exploited allows unauthenticated malicious users to interact with the services and the post-authentication attack surface.
CVE-2023-5515 0.0 unknown
The responses for web queries with certain parameters disclose internal path of resources. This information can be used to learn internal structure of the application and to further plot attacks against web servers and deployed web applications.
CVE-2020-26142 0.0 unknown
The WEP, WPA, WPA2, and WPA3 implementations treat fragmented frames as full frames. An adversary can exploit this vulnerability to inject arbitrary network packets independent of the network configuration.CVE-2020-26142 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N).
CVE-2022-28613 0.0 unknown
A vulnerability exists in the HCI Modbus TCP function included in the affected product versions. If the HCI Modbus TCP is enabled and configured, then an attacker could exploit the vulnerability by sending a specially crafted message to the RTU500, causing the receiving RTU500 CMU to reboot. The vulnerability is caused by a validation error in the length information carried in MBAP header in the HCI Modbus TCP function.CVE-2022-28613 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2020-25692 0.0 unknown
CVE-2020-25692. A NULL pointer dereference was found in OpenLDAP server and was fixed in openldap 2.4.55, during a request for renaming RDNs. An unauthenticated attacker could remotely crash the slapd process by sending a specially crafted request, causing a Denial of Service.
CVE-2022-25314 0.0 unknown
CVE-2022-25314. In Expat (aka libexpat) before 2.4.5, there is an integer overflow in copyString.
CVE-2021-40333 0.0 unknown
This vulnerability is a weak default credential associated with TCP Port 26. Successful exploitation of this vulnerability could allow an attacker to gain unauthorized access to the DCN routing configuration.CVE-2021-40333 has been assigned to this vulnerability. A CVSS v3 base score of 9.0 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:H).
CVE-2021-35531 0.0 unknown
An Improper Input Validation vulnerability in a particular configuration setting field of the affected product allows an attacker, who has access to an authorized user with ADMIN or ENGINEER role rights, to inject an operating system (OS) command; this command will then be executed by the system.CVE-2021-35531 has been assigned to this vulnerability. A CVSS v3 base score of 6.0 has been assigned; the CVSS vector string is (AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L).
CVE-2016-8617 0.0 unknown
No description available.
CVE-2025-2403 0.0 unknown
CVE-2025-2403. A denial-of-service vulnerability due to improper prioritization of network traffic over protection mechanism exists in Relion 670/650 and SAM600-IO series device that if exploited could potentially cause critical functions like LDCM (Line Distance Communication Module) to malfunction.
CVE-2022-45868 0.0 unknown
CVE-2022-45868. The web-based admin console in H2 Database Engine before 2.2.220 can be started via the CLI with the argument -webAdminPassword, which allows the user to specify the password in cleartext for the web admin console. Consequently, a local user (or an attacker that has obtained local access through some means) would be able to discover the password by listing processes and their arguments. The issue was fixed in 2.2.220 by the vendor H2.
CVE-2024-28021 0.0 unknown
A vulnerability exists in the FOXMAN-UN server that affects the message queueing mechanism’s certificate validation. If exploited a malicious user could spoof a trusted entity causing a loss of confidentiality and integrity.
CVE-2023-0464 0.0 unknown
CVE-2023-0464. A security vulnerability has been identified in all supported versions of OpenSSL related to the verification of X.509 certificate chains that include policy constraints. Attackers may be able to exploit this vulnerability by creating a malicious certificate chain that triggers exponential use of computational resources, leading to a denial-of-service (DoS) attack on affected systems. Policy processing is disabled by default but can be enabled by passing the `-policy` argument to the command line utilities or by calling the `X509_VERIFY_PARAM_set1_policies()` function.
CVE-2020-10713 0.0 unknown
A flaw was found in grub2, prior to version 2.06. An attacker may use the GRUB 2 flaw to hijack and tamper the GRUB verification process. This flaw also allows the bypass of Secure Boot protections. In order to load an untrusted or modified kernel, an attacker would first need to establish access to the system such as gaining physical access, obtain the ability to alter a pxe-boot network, or have remote access to a networked system with root access. With this access, an attacker could then craft a string to cause a buffer overflow by injecting a malicious payload that leads to arbitrary code execution within GRUB. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2013-2174 0.0 unknown
No description available.
CVE-2021-41991 0.0 unknown
The in-memory certificate cache in strongSwan before version 5.9.4 has a remote integer overflow vulnerability upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. This could lead to a denial of service (DoS) condition. Remote code execution can't be excluded completely, but it would require attackers to have control over the dereferenced memory, so it is very unlikely.
CVE-2015-6584 0.0 unknown
Hitachi Energy is aware of public reports of multiple vulnerabilities in open-source software components (JQuery, GoAhead Embedded Webserver, and Curl) used in MSM products. Versions are available to remediate the identified vulnerabilities.CVE-2015-6584, CVE-2016-7103, CVE-2011-4273, CVE-2018-16842, CVE-2016-9586, CVE-2016-8617, CVE-2016-8618, CVE-2016-8619, CVE-2016-8621, CVE-2016-7167, CVE-2014-3707, CVE-2013-2174, and CVE-2014-0138, have been assigned to these vulnerabilities in open-source components used by MSM. A CVSS v3 base score of 9.8 has been calculated for the worst case; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2025-59375 0.0 unknown
CVE-2025-59375. A vulnerability exists in libexpat used by the product allowing attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing. Product is only affected if IEC61850 server simulation is used.
CVE-2014-8730 0.0 unknown
No description available.
CVE-2023-0215 0.0 unknown
CVE-2023-0215. The public API function BIO_new_NDEF is a helper function used for streaming ASN.1 data via a BIO. It is primarily used internally to OpenSSL to support the SMIME, CMS and PKCS7 streaming capabilities, but may also be called directly by end user applications. The function receives a BIO from the caller, prepends a new BIO_f_asn1 filter BIO onto the front of it to form a BIO chain, and then returns the new head of the BIO chain to the caller. Under certain conditions, for example if a CMS recipient public key is invalid, the new filter BIO is freed and the function returns a NULL result indicating a failure. However, in this case, the BIO chain is not properly cleaned up and the BIO passed by the caller still retains internal pointers to the previously freed filter BIO. If the caller then goes on to call BIO_pop() on the BIO then a use-after-free will occur. This will most likely result in a crash. This scenario occurs directly in the internal function B64_write_ASN1() which may cause BIO_new_NDEF() to be called and will subsequently call BIO_pop() on the BIO. This internal function is in turn called by the public API functions PEM_write_bio_ASN1_stream, PEM_write_bio_CMS_stream, PEM_write_bio_PKCS7_stream, SMIME_write_ASN1, SMIME_write_CMS and SMIME_write_PKCS7. Other public API functions that may be impacted by this include i2d_ASN1_bio_stream, BIO_new_CMS, BIO_new_PKCS7, i2d_CMS_bio_stream and i2d_PKCS7_bio_stream. The OpenSSL cms and smime command line applications are similarly affected.
CVE-2021-43523 0.0 unknown
In uClibc and uClibc-ng before 1.0.39, incorrect handling of special characters in domain names DNS servers returned via gethostbyname, getaddrinfo, gethostbyaddr, and getnameinfo could lead to output of wrong hostnames (leading to domain hijacking) or injection into applications (leading to remote code execution, XSS, applications crashes, etc.). In other words, a validation step, which is expected in any stub resolver, does not occur.
CVE-2026-8479 0.0 unknown
CVE-2026-8479. CWE-476: NULL Pointer Dereference. IEC 60870-5-104 used in bidirectional mode is vulnerable for a NULL pointer dereferencing, if a specially crafted sequence of messages is sent for a certain time, causing Denial of Service impact. Product is only affected if IEC 60870-5-104 functionality in bidirectional mode (BCI) is configured.
CVE-2021-27432 0.0 unknown
The affected products are vulnerable to an uncontrollable recursion, which may trigger a stack-based buffer overflow.CVE-2021-27432 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2019-12263 0.0 unknown
This vulnerability relies on a race-condition between the network task (tNet0) and the receiving application. It is very difficult to trigger the race on a system with a single CPU-thread enabled, and there is no way to reliably trigger a race on SMP targets.
CVE-2019-1563 0.0 unknown
In situations where an attacker receives automated notification of the success or failure of a decryption attempt an attacker, after sending a very large number of messages to be decrypted, can recover a CMS/PKCS7 transported encryption key or decrypt any RSA encrypted message that was encrypted with the public RSA key, using a Bleichenbacher padding oracle attack. Applications are not affected if they use a certificate together with the private RSA key to the CMS_decrypt or PKCS7_decrypt functions to select the correct recipient info to decrypt. Fixed in OpenSSL 1.1.1d (Affected 1.1.1-1.1.1c). Fixed in OpenSSL 1.1.0l (Affected 1.1.0-1.1.0k). Fixed in OpenSSL 1.0.2t (Affected 1.0.2-1.0.2s).
CVE-2016-2182 0.0 unknown
CVE-2016-2182. The BN_bn2dec function in crypto/bn/bn_print.c in OpenSSL before 1.1.0 does not properly validate division results, which allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via unknown vectors.
CVE-2023-31122 0.0 unknown
CVE-2023-31122. Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue affects Apache HTTP Server: through 2.4.57.
CVE-2022-3388 0.0 unknown
An input validation vulnerability exists in the Monitor Pro interface of MicroSCADA Pro and MicroSCADA X SYS600. An authenticated user could launch an administrator level remote code execution regardless of the authenticated user's role.
CVE-2024-53429 0.0 unknown
Open62541 v1.4.6 has an assertion failure in fuzz_binary_decode, which leads to a crash.
CVE-2020-24977 0.0 unknown
CVE-2020-24977. GNOME project libxml2 v2.9.10 has a global buffer over-read vulnerability in xmlEncodeEntitiesInternal at libxml2/entities.c. The issue has been fixed in commit 50f06b3e.
CVE-2021-40335 0.0 unknown
The affected product is vulnerable to cross site request forgery (CSRF), which if exploited could lead an attacker to gain unauthorized access to the web application and perform an unauthorized action without the knowledge of the legitimate user.CVE-2021-40335 has been assigned to this vulnerability. A CVSS v3 base score of 5.0 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L).
CVE-2020-14308 0.0 unknown
In grub2 versions before 2.06 the grub memory allocator doesn't check for possible arithmetic overflows on the requested allocation size. This leads the function to return invalid memory allocations which can be further used to cause possible integrity, confidentiality and availability impacts during the boot process.
CVE-2021-22883 0.0 unknown
CVE-2021-22883. Node.js before 10.24.0, 12.21.0, 14.16.0, and 15.10.0 is vulnerable to a denial of service attack when too many connection attempts with an 'unknownProtocol' are established. This leads to a leak of file descriptors. If a file descriptor limit is configured on the system, then the server is unable to accept new connections and prevent the process also from opening, e.g. a file. If no file descriptor limit is configured, then this lead to an excessive memory usage and cause the system to run out of memory.
CVE-2018-15505 0.0 unknown
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. An HTTP POST request with a specially crafted "host" header field may cause a NULL pointer dereference resulting in a denial-of-service condition, as demonstrated by the lack of a trailing ']' character in an IPv6 address. CVE-2018-15505 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2022-25315 0.0 unknown
CVE-2022-25315. In Expat (aka libexpat) before 2.4.5, there is an integer overflow in storeRawNames.
CVE-2021-28041 0.0 unknown
CVE-2021-28041. ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.
CVE-2021-44228 0.0 unknown
CVE-2021-44228. Apache Log4j V2, versions < 2.15.0 do not protect JNDI features (as used in configuration, log messages, and parameters) against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log messages or log message parameters could execute arbitrary code loaded from LDAP servers when message lookup substitution is enabled.
CVE-2022-3685 0.0 unknown
A vulnerability exists in the affected SDM600 versions software. The software operates at a privilege level higher than the minimum level required. An attacker successfully exploiting this vulnerability could escalate privileges. CVE-2022-3685 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H).
CVE-2023-1514 0.0 unknown
Hitachi Energy is aware of a reported vulnerability in the RTU500 Scripting interface. When a client connects to a server using TLS, the server presents a certificate. This certificate links a public key to the identity of the service and is signed by a Certification Authority (CA), allowing the client to validate that the remote service can be trusted and is not malicious. If the client does not validate the parameters of the certificate, then attackers could be able to spoof the identity of the service.
CVE-2020-11080 0.0 unknown
The affected product version of Node.js is vulnerable to an error in the HTTP/2 session frame, which is limited to 32 settings by default. An attacker could consume all available CPU resources causing a denial-of-service condition.CVE-2020-11080 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2019-19096 0.0 unknown
CVE-2019-19096. The Redis data structure component used in ABB eSOMS Versions 6.0.2 and earlier is storing credentials in clear text. If an attacker has file system access, this can potentially compromise the credential 's confidentiality. CVE-2019-19096 has been assigned to this vulnerability. A CVSS v3 base score of 6.1 has been assigned; the CVSS vector string is (AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N).
CVE-2021-27196 0.0 unknown
An attacker with access to the IEC 61850 network and knowledge of how to reproduce the attack�as well as the IP addresses of the different IEC 61850 access points (of IEDs/products)�can force the device to reboot, which renders the device inoperable for approximately 60 seconds. This vulnerability affects only products with IEC 61850 interfaces.
CVE-2024-41156 0.0 unknown
Profile files from TRO600 series radios are extracted in plain-text and encrypted file formats. Profile files provide potential attackers valuable configuration information about the Tropos network. Profiles can only be exported by authenticated users with write access.
CVE-2019-1549 0.0 unknown
OpenSSL 1.1.1 introduced a rewritten random number generator (RNG). This was intended to include protection in the event of a fork() system call in order to ensure that the parent and child processes did not share the same RNG state. However this protection was not being used in the default case. A partial mitigation for this issue is that the output from a high precision timer is mixed into the RNG state so the likelihood of a parent and child process sharing state is significantly reduced. If an application already calls OPENSSL_init_crypto() explicitly using OPENSSL_INIT_ATFORK then this problem does not occur at all. Fixed in OpenSSL 1.1.1d (Affected 1.1.1-1.1.1c).
CVE-2006-20001 0.0 unknown
CVE-2006-20001. A carefully crafted If: request header can cause a memory read, or write of a single zero byte, in a pool (heap) memory location beyond the header value sent. This could cause the process to crash. This issue affects Apache HTTP Server 2.4.54 and earlier.
CVE-2019-19093 0.0 unknown
CVE-2019-19093. eSOMS versions before 6.0.3 do not enforce password complexity settings, potentially resulting in lower access security due to insecure user passwords. CVE-2019-19093 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N).
CVE-2022-4304 0.0 unknown
CVE-2022-4304. A timing-based side channel exists in the OpenSSL RSA Decryption implementation which could be sufficient to recover a plaintext across a network in a Bleichenbacher style attack. To achieve a successful decryption an attacker would have to be able to send a very large number of trial messages for decryption. The vulnerability affects all RSA padding modes: PKCS#1 v1.5, RSA-OEAP and RSASVE. For example, in a TLS connection, RSA is commonly used by a client to send an encrypted pre-master secret to the server. An attacker that had observed a genuine connection between a client and a server could use this flaw to send trial messages to the server and record the time taken to process them. After a sufficiently large number of messages the attacker could recover the pre-master secret used for the original connection and thus be able to decrypt the application data sent over that connection.
CVE-2020-1971 0.0 unknown
CVE-2020-1971. The X.509 GeneralName type is a generic type for representing different types of names. One of those name types is known as EDIPartyName. OpenSSL provides a function GENERAL_NAME_cmp which compares different instances of a GENERAL_NAME to see if they are equal or not. This function behaves incorrectly when both GENERAL_NAMEs contain an EDIPARTYNAME. A NULL pointer dereference and a crash may occur leading to a possible denial of service attack. OpenSSL itself uses the GENERAL_NAME_cmp function for two purposes: 1) Comparing CRL distribution point names between an available CRL and a CRL distribution point embedded in an X509 certificate 2) When verifying that a timestamp response token signer matches the timestamp authority name (exposed via the API functions TS_RESP_verify_response and TS_RESP_verify_token) If an attacker can control both items being compared then that attacker could trigger a crash. For example if the attacker can trick a client or server into checking a malicious certificate against a malicious CRL then this may occur. Note that some applications automatically download CRLs based on a URL embedded in a certificate. This checking happens prior to the signatures on the certificate and CRL being verified. OpenSSL's s_server, s_client and verify tools have support for the "-crl_download" option which implements automatic CRL downloading and this attack has been demonstrated to work against those tools. Note that an unrelated bug means that affected versions of OpenSSL cannot parse or construct correct encodings of EDIPARTYNAME. However it is possible to construct a malformed EDIPARTYNAME that OpenSSL's parser will accept and hence trigger this attack. All OpenSSL 1.1.1 and 1.0.2 versions are affected by this issue. Other OpenSSL releases are out of support and have not been checked. Fixed in OpenSSL 1.1.1i (Affected 1.1.1-1.1.1h). Fixed in OpenSSL 1.0.2x (Affected 1.0.2-1.0.2w).
CVE-2025-55182 0.0 unknown
No description available.
CVE-2016-2148 0.0 unknown
No description available.
CVE-2023-1711 0.0 unknown
The affected product is vulnerable to an improper output neutralization for logs, which could allow an attacker to forge log entries or inject malicious content into logs.
CVE-2019-18253 0.0 unknown
No description available.
CVE-2023-23916 0.0 unknown
CVE-2023-23916. An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the "chained" HTTP compression algorithms, meaning that a server response can be compressed multiple times and potentially with differentalgorithms. The number of acceptable "links" in this "decompression chain" wascapped, but the cap was implemented on a per-header basis allowing a maliciousserver to insert a virtually unlimited number of compression steps simply byusing many headers. The use of such a decompression chain could result in a "malloc bomb", making curl end up spending enormous amounts of allocated heap memory, or trying to and returning out of memory errors.
CVE-2025-27633 0.0 unknown
The TRMTracker web application is vulnerable to reflected Cross-site scripting attack. The application allows client-side code injection that might be used to compromise the confidentiality and integrity of the system.
CVE-2022-40674 0.0 unknown
CVE-2022-40674. Local users can write to UNIX domain sockets can bypass access controls and manipulate the multipath setup. This can lead to local privilege escalation to root. This occurs because an attacker can repeat a keyword, which is mishandled because arithmetic ADD is used instead of bitwise OR.
CVE-2022-37434 0.0 unknown
CVE-2022-37434. zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field, potentially allowing an authenticated attacker to reveal sensitive information or to cause a denial-of-service situation.
CVE-2022-22827 0.0 unknown
CVE-2022-22827. storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2019-1547 0.0 unknown
Normally in OpenSSL EC groups always have a co-factor present and this is used in side channel resistant code paths. However, in some cases, it is possible to construct a group using explicit parameters (instead of using a named curve). In those cases it is possible that such a group does not have the cofactor present. This can occur even where all the parameters match a known named curve. If such a curve is used then OpenSSL falls back to non-side channel resistant code paths which may result in full key recovery during an ECDSA signature operation. In order to be vulnerable an attacker would have to have the ability to time the creation of a large number of signatures where explicit parameters with no co-factor present are in use by an application using libcrypto. For the avoidance of doubt libssl is not vulnerable because explicit parameters are never used. Fixed in OpenSSL 1.1.1d (Affected 1.1.1-1.1.1c). Fixed in OpenSSL 1.1.0l (Affected 1.1.0-1.1.0k). Fixed in OpenSSL 1.0.2t (Affected 1.0.2-1.0.2s).
CVE-2020-1967 0.0 unknown
CVE-2020-1967. Server or client applications that call the SSL_check_chain() function during or after a TLS 1.3 handshake may crash due to a NULL pointer dereference as a result of incorrect handling of the "signature_algorithms_cert" TLS extension. The crash occurs if an invalid or unrecognised signature algorithm is received from the peer. This could be exploited by a malicious peer in a Denial of Service attack.
CVE-2015-3148 0.0 unknown
No description available.
CVE-2024-2461 0.0 unknown
Hitachi Energy is aware of a vulnerability that affects the XMC20. If exploited an attacker could traverse the file system to access files or directories that would otherwise be inaccessible.
CVE-2026-1772 0.0 unknown
CVE-2026-1772. RTU500 web interface: An unprivileged user can read user management information. The information cannot be accessed via the RTU500 web user interface but requires further tools like browser development utilities to access them without required privileges.
CVE-2022-43680 0.0 unknown
CVE-2022-43680. In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.
CVE-2024-41153 0.0 unknown
Command injection vulnerability in the Edge Computing UI for the TRO600 series radios that allows for the execution of arbitrary system commands. If exploited, an attacker with write access to the web UI can execute commands on the device with root privileges, far more extensive than what the write privilege intends.
CVE-2023-5769 0.0 unknown
A vulnerability exists in the HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. Incomplete or wrong received APDU frame layout may cause blocking on link layer. Error reason was an endless blocking when reading incoming frames on link layer with wrong length information of APDU or delayed reception of data octets. Only communication link of affected HCI IEC 60870-5-104 is blocked. If attack sequence stops the communication to the previously attacked link gets normal again.
CVE-2020-8174 0.0 unknown
napi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0.CVE-2020-8174 has been assigned to this vulnerability. A CVSS v3 base score of 8.1 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2011-1207 0.0 unknown
The ActiveBar ActiveX control distributed in ActBar.ocx 1.0.3.8 in SYS600 product does not properly restrict the SetLayoutData method, which could allow attackers to execute arbitrary code via a crafted data argument.
CVE-2019-18247 0.0 unknown
No description available.
CVE-2022-2081 0.0 unknown
This vulnerability exists in the HCI Modbus TCP function in affected product versions. If the HCI Modbus TCP is enabled and configured, an attacker could exploit the vulnerability by sending a specially crafted message to the RTU500 in a high rate, causing the targeted RTU500 CMU to reboot. There is a lack of flood control, which if exploited, could cause an internal stack overflow in the HCI Modbus TCP function.CVE-2022-2081 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).
CVE-2019-19790 0.0 unknown
Path traversal in RadChart in Telerik UI for ASP.NET AJAX allows a remote attacker to read and delete an image with extension .BMP, .EXIF, .GIF, .ICON, .JPEG, .PNG, .TIFF, or .WMF on the server through a specially crafted request.CVE-2019-19790 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2022-25236 0.0 unknown
CVE-2022-25236. xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.
CVE-2016-2177 0.0 unknown
CVE-2016-2177. OpenSSL through 1.0.2h incorrectly uses pointer arithmetic for heap-buffer boundary checks, which might allow remote attackers to cause a denial of service (integer overflow and application crash) or possibly have unspecified other impact by leveraging unexpected malloc behavior, related to s3_srvr.c, ssl_sess.c, and t1_lib.c.
CVE-2018-18066 0.0 unknown
snmp_oid_compare in snmplib/snmp_api.c in NetSNMP before 5.8 has a NULL pointer exception bug that an unauthenticated attacker could use to remotely cause the instance to crash via a crafted UDP packet, resulting in denial of service.
CVE-2024-2012 0.0 unknown
A vulnerability exists in the FOXMAN-UN server / APIGateway that if exploited could be used to allow unintended commands or code to be executed on the FOXMAN-UN server.
CVE-2017-11498 0.0 unknown
No description available.
CVE-2016-4524 0.0 unknown
ABB PCM600 before 2.7 improperly stores OPC Server IEC61850 passwords in unspecified temporary circumstances, which allows local users to obtain sensitive information via unknown vectors.
CVE-2023-27522 0.0 unknown
CVE-2023-27522. HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.55. Special characters in the origin response header can truncate/split the response forwarded to the client.
CVE-2017-12819 0.0 unknown
No description available.
CVE-2022-3353 0.0 unknown
CVE-2022-3353. A vulnerability exists in the IEC 61850 communication stack of the Relion 670, 650 and SAM600-IO products versions listed below. An attacker could exploit the vulnerability by using a specially crafted message sequence to force the IEC 61850 MMS-server communication stack to stop accepting new MMS-client connections. Already existing/established client-server connections are not affected.
CVE-2019-19090 0.0 unknown
CVE-2019-19090. For ABB eSOMS Versions 6.0.2 and earlier, the Secure Flag is not set in the HTTP response header. Unencrypted connections might access the cookie information, thus making it susceptible to eavesdropping. CVE-2019-19090 has been assigned to this vulnerability. A CVSS v3 base score of 3.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N).
CVE-2015-5364 0.0 unknown
No description available.
CVE-2025-39201 0.0 unknown
A vulnerability exists in MACH GWS product. If exploited this could allow a local unauthenticated attacker to tamper a system file, making denial of Notify service.
CVE-2017-13084 0.0 unknown
No description available.
CVE-2017-13080 0.0 unknown
No description available.
CVE-2020-14310 0.0 unknown
There is an issue on grub2 before version 2.06 at function read_section_as_string(). It expects a font name to be at max UINT32_MAX - 1 length in bytes but it doesn't verify it before proceed with buffer allocation to read the value from the font value. An attacker may leverage that by crafting a malicious font file which has a name with UINT32_MAX, leading to read_section_as_string() to an arithmetic overflow, zero-sized allocation and further heap-based buffer overflow.
CVE-2021-40546 0.0 unknown
No description available.
CVE-2021-3711 0.0 unknown
CVE-2021-3711. In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an application will call this function twice. The first time, on entry, the "out" parameter can be NULL and, on exit, the "outlen" parameter is populated with the buffer size required to hold the decrypted plaintext. The application can then allocate a sufficiently sized buffer and call EVP_PKEY_decrypt() again, but this time passing a non-NULL value for the "out" parameter. A bug in the implementation of the SM2 decryption code means that the calculation of the buffer size required to hold the plaintext returned by the first call to EVP_PKEY_decrypt() can be smaller than the actual size required by the second call. This can lead to a buffer overflow when EVP_PKEY_decrypt() is called by the application a second time with a buffer that is too small. A malicious attacker who is able present SM2 content for decryption to an application could cause attacker chosen data to overflow the buffer by up to a maximum of 62 bytes altering the contents of other data held after the buffer, possibly changing application behaviour or causing the application to crash. The location of the buffer is application dependent but is typically heap allocated. Fixed in OpenSSL 1.1.1l (Affected 1.1.1-1.1.1k).
CVE-2016-2109 0.0 unknown
CVE-2016-2109. The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.
CVE-2019-19091 0.0 unknown
CVE-2019-19091. For ABB eSOMS Versions 6.0.3 and earlier, HTTPS responses contain comments with sensitive information about the application. An attacker might use this detail information to specifically craft the attack. CVE-2019-19091 has been assigned to this vulnerability. A CVSS v3 base score of 4.3 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N).
CVE-2022-26377 0.0 unknown
No description available.
CVE-2022-28614 0.0 unknown
No description available.
CVE-2020-26141 0.0 unknown
CVE-2020-26141. An issue was discovered in the ALFA Windows 10 driver 6.1316.1209 for AWUS036H. The Wi-Fi implementation does not verify the Message Integrity Check (authenticity) of fragmented TKIP frames. An adversary can abuse this to inject and possibly decrypt packets in WPA or WPA2 networks that support the TKIP data-confidentiality protocol.
CVE-2024-45491 0.0 unknown
CVE-2024-45491. An issue was discovered in libexpat before 2.6.3. dtdCopy in xmlparse.c can have an integer overflow for nDefaultAtts on 32-bit platforms (where UINT_MAX equals SIZE_MAX).
CVE-2018-5477 0.0 unknown
No description available.
CVE-2016-7167 0.0 unknown
No description available.
CVE-2021-35527 0.0 unknown
The web application password field allows a browser to store user credentials, which may allow an attacker who gains control of the users ' system, or successfully exploits a cross site scripting vulnerability in another application, to capture stored passwords.CVE-2021-35527 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).
CVE-2024-45492 0.0 unknown
CVE-2024-45492. An issue was discovered in libexpat before 2.6.3. nextScaffoldPart in xmlparse.c can have an integer overflow for m_groupSize on 32-bit platforms (where UINT_MAX equals SIZE_MAX).
CVE-2019-16645 0.0 unknown
An issue was discovered in Embedthis GoAhead 2.5.0. Certain pages (ex: goform/login and config/log_off_page.htm) create links containing a hostname obtained from an arbitrary HTTP host header sent by an attacker. This could potentially be used in a phishing attack. CVE-2019-16645 has been assigned to this vulnerability. A CVSS v3 base score of 8.6 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N).
CVE-2018-5379 0.0 unknown
No description available.
CVE-2021-3537 0.0 unknown
CVE-2021-3537. A vulnerability found in libxml2 in versions before 2.9.11 shows that it did not propagate errors while parsing XML mixed content, causing a NULL dereference. If an untrusted XML document was parsed in recovery mode and post-validated, the flaw could be used to crash the application. The highest threat from this vulnerability is to system availability.
CVE-2019-9256 0.0 unknown
A vulnerability exists in the libmediaextractor component. If successfully exploited, an attacker could trigger an out-of-bounds write due to an integer overflow, potentially leading to remote code execution.
CVE-2017-15583 0.0 unknown
No description available.
CVE-2024-12169 0.0 unknown
CVE-2024-12169. A vulnerability exists in RTU500 IEC 60870-5-104 controlled station functionality and IEC 61850 functionality, that allows an attacker performing a specific attack sequence to restart the affected CMU. This vulnerability only applies, if secure communication using IEC 62351-3 (TLS) is enabled.
CVE-2020-25709 0.0 unknown
CVE-2020-25709. A flaw was found in OpenLDAP. This flaw allows an attacker who can send a malicious packet to be processed by OpenLDAP’s slapd server, to trigger an assertion failure. The highest threat from this vulnerability is to system availability.
CVE-2020-26143 0.0 unknown
CVE-2020-26143. An issue was discovered in the ALFA Windows 10 driver 1030.36.604 for AWUS036ACH. The WEP, WPA, WPA2, and WPA3 implementations accept fragmented plaintext frames in a protected Wi-Fi network. An adversary can abuse this to inject arbitrary data frames independent of the network configuration.
CVE-2022-3864 0.0 unknown
CVE-2022-3864. A vulnerability exists in the Relion update package signature validation. A tampered update package could cause the IED to restart. After restart the device is back to normal operation. An attacker could exploit the vulnerability by first gaining access to the system with security privileges, and attempt to update the IED with a malicious update package. Successful exploitation of this vulnerability will cause the IED to restart, causing a temporary denial of service.
CVE-2022-22824 0.0 unknown
CVE-2022-22824. defineAttribute in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2022-30522 0.0 unknown
No description available.
CVE-2024-3596 0.0 unknown
CVE-2024-3596. Additional information about CVE-2024-3596 can be found here:https://www.cve.org/CVERecord?id=CVE-2024-3596
CVE-2024-9929 0.0 unknown
No description available.
CVE-2022-3204 0.0 unknown
A vulnerability named "non-responsive delegation attack" (NRDelegation attack) has been discovered in various DNS resolving software. The NRDelegation attack works by having a malicious delegation with a considerable number of non-responsive nameservers. The attack starts by querying a resolver for a record that relies on those unresponsive nameservers. The attack could cause a resolver to spend time/resources resolving records under a malicious delegation point where a considerable number of unresponsive NS records reside. It could trigger high CPU usage in some resolver implementations that continually look in the cache for resolved NS records in that delegation, which could lead to degraded performance and eventually denial of service in orchestrated attacks. Unbound does not suffer from high CPU usage, but still requires resources to resolve the malicious delegation. Unbound will continue to try to resolve the record until it reaches hard limits. Based on the nature of the attack and the replies, Unbound could reach different limits. From version 1.16.3 on, Unbound introduces fixes for better performance when under load by cutting opportunistic queries for nameserver discovery and DNSKEY prefetching and limiting the number of times a delegation point can issue a cache lookup for missing records.
CVE-2020-8287 0.0 unknown
CVE-2020-8287. Node.js versions before 10.23.1, 12.20.1, 14.15.4, 15.5.1 allow two copies of a header field in an HTTP request (for example, two Transfer-Encoding header fields). In this case, Node.js identifies the first header field and ignores the second. This can lead to HTTP Request Smuggling.
CVE-2024-3980 0.0 unknown
The MicroSCADA Pro/X SYS600 product allows an authenticated user input to control or influence paths or file names that are used in filesystem operations. If exploited the vulnerability allows the attacker to access or modify system files or other files that are critical to the application.
CVE-2016-7103 0.0 unknown
No description available.
CVE-2019-18935 0.0 unknown
Progress Telerik UI for ASP.NET AJAX through 2019.3.1023 contains a .NET deserialization vulnerability in the RadAsyncUpload function. This is exploitable when the encryption keys are known.CVE-2019-18935 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2018-1002208 0.0 unknown
CVE-2018-1002208. A vulnerability exists in the SharpZip.dll included in the product versions listed above. An attacker could exploit vulnerability by providing a specially crafted message to the system node, causing insertion, and running of arbitrary code.
CVE-2010-3591 0.0 unknown
A vulnerability exists in the Actbar2.ocx module included in the affected products. An attacker who successfully exploits this vulnerability could remove data from the local system or modify the workflow, potentially impacting how the energy system interprets and responds to inputs.CVE-2010-3591 has been assigned to this vulnerability. A CVSS v3 base score of 9.0 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H).
CVE-2022-31813 0.0 unknown
No description available.
CVE-2021-3517 0.0 unknown
CVE-2021-3517. There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-of-bounds read. The most likely impact of this flaw is to application availability, with some potential impact to confidentiality and integrity if an attacker is able to use memory information to further exploit the application.
CVE-2023-2621 0.0 unknown
The McFeeder server (distributed as part of SSW package), is susceptible to an arbitrary file write vulnerability on the MAIN computer system. This vulnerability stems from the use of an outdated version of a third-party library, which is used to extract archives up-loaded to McFeeder server. An authenticated malicious client can exploit this vulnerability by uploading a crafted ZIP archive via the network to McFeeder's service endpoint.
CVE-2026-25210 0.0 unknown
CVE-2026-25210. CWE-190: Integer Overflow or Wraparound. In libexpat before 2.7.4, the doContent function does not properly determine the buffer size bufSize because there is no integer overflow check for tag buffer reallocation, primarily causing Denial of Service and potentially confidentiality and integrity impact to the product. Product is only affected if IEC 61850 functionality is configured.
CVE-2019-19001 0.0 unknown
CVE-2019-19001. For ABB eSOMS Versions 6.0.2 and earlier, the X-Frame-Options header is not configured in HTTP response. This can potentially allow 'ClickJacking' attacks where an attacker can frame parts of the application on a malicious website, revealing sensitive user information such as authentication credentials. CVE-2019-19001 has been assigned to this vulnerability. A CVSS v3 base score of 6.5 has been assigned; the CVSS vector string is (AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N).
CVE-2019-5097 0.0 unknown
A denial-of-service vulnerability exists in the processing of multipart/form-data requests in the base GoAhead web server application in versions v5.0.1, v.4.1.1 and v3.6.5. A specially crafted HTTP request can lead to an infinite loop in the process. The request can be unauthenticated in the form of GET or POST requests and does not require the requested resource to exist on the server.
CVE-2020-12243 0.0 unknown
CVE-2020-12243. In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).
CVE-2020-14309 0.0 unknown
There's an issue with grub2 in all versions before 2.06 when handling squashfs filesystems containing a symbolic link with name length of UINT32 bytes in size. The name size leads to an arithmetic overflow leading to a zero-size allocation further causing a heap-based buffer overflow with attacker controlled data.
CVE-2016-6304 0.0 unknown
CVE-2016-6304. Multiple memory leaks in t1_lib.c in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0 before 1.1.0a allow remote attackers to cause a denial of service (memory consumption) via large OCSP Status Request extensions.
CVE-2024-2378 0.0 unknown
A vulnerability exists in the web-authentication component of the SDM600. If exploited an attacker could escalate privileges on affected installations.
CVE-2024-10037 0.0 unknown
CVE-2024-10037. A vulnerability exists in the RTU500 web server com-ponent that can cause a denial of service to the RTU500 CMU application if a specially crafted message sequence is executed on a WebSocket connection. An attacker must be properly authenticated and the test mode function of RTU500 must be enabled to exploit this vulnerability. The affected CMU will automatically recover itself if an attacker successfully exploits this vulnerability.
CVE-2017-13087 0.0 unknown
No description available.
CVE-2021-40340 0.0 unknown
Misconfiguration in the ASP server causes server and ASP.net information to be shown. An attacker can use this information as a reconnaissance for further exploitation.CVE-2021-40340 has been assigned to this vulnerability. A CVSS v3 base score of 3.7 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
CVE-2021-26845 0.0 unknown
A vulnerability exists in the eSOMS reporting function that could allow an unauthorized user to gain access to report data if the URL used to access the report is discovered.CVE-2021-26845 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).
CVE-2018-1168 0.0 unknown
No description available.
CVE-2021-43980 0.0 unknown
No description available.
CVE-2017-11317 0.0 unknown
Telerik.Web.UI in Progress Telerik UI for ASP.NET AJAX before R1 2017 and R2 before R2 2017 SP2 uses weak RadAsyncUpload encryption, which allows remote attackers to perform arbitrary file uploads or execute arbitrary code.CVE-2017-11317 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2024-2244 0.0 unknown
REST service authentication anomaly with "valid username/no password" credential combination for batch job processing may result in successful service invocation. The anomaly doesn't exist with other credential combinations.
CVE-2024-28757 0.0 unknown
A vulnerability has been identified in libexpat library used in the IEC 61850 client and server components of the RTU500 product series. An authenticated and authorized malicious user could load a crafted XML input which may lead to a memory mismanagement potentially causing RTU500 to reboot.
CVE-2020-8201 0.0 unknown
Node.js < 12.18.4 and < 14.11 can be exploited to perform HTTP desync attacks and deliver malicious payloads to unsuspecting users. The payloads can be crafted by an attacker to hijack user sessions, poison cookies, perform clickjacking, and a multitude of other attacks depending on the architecture of the underlying system. The attack is possible due to a bug in processing of carrier-return symbols in the HTTP header names.CVE-2020-8201 has been assigned to this vulnerability. A CVSS v3 base score of 7.4 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N).
CVE-2024-8176 0.0 unknown
CVE-2024-8176. A stack overflow vulnerability exists in the libexpat library used by the IEC61850 functionality supported by the product. A malicious user with local access could use a crafted IEC61850 message to exploit the vulnerability in the libexpat library. This issue could lead to denial of service (DoS) or, in some cases, exploitable memory corruption, depending on the environment and library usage. Product is only affected if IEC61850 server simulation is used.
CVE-2020-8252 0.0 unknown
The implementation of realpath in libuv < 10.22.1, < 12.18.4, and < 14.9.0 used within Node.js incorrectly determined the buffer size, which can result in a buffer overflow if the resolved path is longer than 256 bytes.CVE-2020-8252 has been assigned to this vulnerability. A CVSS v3 base score of 7.8 has been calculated; the CVSS vector string is (AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).
CVE-2021-35535 0.0 unknown
CVE-2021-35535. A vulnerability exists in the early boot process of the product in which there is a tiny time gap where an older version of VxWorks is loaded prior to booting up the complete application firmware. The older version of VxWorks is a version that is susceptible to Urgent/11 of which successful exploitation allows for remote code execution on the device before operating system is loaded.
CVE-2024-7940 0.0 unknown
The product exposes a service that is intended for local only to all network interfaces without any authentication.
CVE-2023-4816 0.0 unknown
A vulnerability exists in the Equipment Tag Out authentication, when configured with Single Sign-On (SSO) with password validation in T214. This vulnerability can be exploited by an authenticated user performing an Equipment Tag Out holder action (Accept, Release, and Clear) for another user and entering an arbitrary password in the holder action confirmation dialog box. Despite entering an arbitrary password in the confirmation box, the system will execute the selected holder action.
CVE-2021-45105 0.0 unknown
CVE-2021-45105. Apache Log4j2 versions 2.0-alpha1 through 2.16.0 did not protect from uncontrolled recursion from self-referential lookups, when the logging configuration uses a non-default Pattern Layout with a Context Lookup (for example, $${ctx:loginId}). This could allow attackers with control over Thread Context Map (MDC) input data to craft malicious input data that contains a recursive lookup, resulting in a denial of service condition.
CVE-2019-9429 0.0 unknown
A vulnerability exists in the profman component due to memory corruption. If successfully exploited, an attacker could trigger an out-of-bounds write, potentially leading to unauthorized local escalation of privileges.
CVE-2017-11497 0.0 unknown
No description available.
CVE-2020-8172 0.0 unknown
TLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0.CVE-2020-8172 has been assigned to this vulnerability. A CVSS v3 base score of 7.4 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N).
CVE-2024-1531 0.0 unknown
A vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor could print random memory content in the RTU500 system log, if an authorized user uploads a specially crafted stb-language file.
CVE-2001-0328 0.0 unknown
No description available.
CVE-2020-26140 0.0 unknown
CVE-2020-26140. An issue was discovered in the ALFA Windows 10 driver 6.1316.1209 for AWUS036H. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext frames in a protected Wi-Fi network. An adversary can abuse this to inject arbitrary data frames independent of the network configuration.
CVE-2020-26139 0.0 unknown
CVE-2020-26139. An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. This might be abused in projected Wi-Fi networks to launch denial-of-service attacks against connected clients and makes it easier to exploit other vulnerabilities in connected clients.
CVE-2017-12820 0.0 unknown
No description available.
CVE-2025-39202 0.0 unknown
A vulnerability exists in Monitor Pro and Supervision log of MicroSCADA X SYS600 product. Local, authenticated low privilege user can see and overwrite files causing information leak and data corruption.
CVE-2020-8265 0.0 unknown
CVE-2020-8265. Node.js versions before 10.23.1, 12.20.1, 14.15.4, 15.5.1 are vulnerable to a use-after-free bug in its TLS implementation. When writing to a TLS enabled socket, node::StreamBase::Write calls node::TLSWrap::DoWrite with a freshly allocated WriteWrap object as first argument. If the DoWrite method does not return an error, this object is passed back to the caller as part of a StreamWriteResult structure. This may be exploited to corrupt memory leading to a Denial of Service or potentially other exploits.
CVE-2021-4034 0.0 unknown
CVE-2021-4034. A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine.
CVE-2023-53155 0.0 unknown
goform/formTest in EmbedThis GoAhead 2.5 allows HTML injection via the name parameter.
CVE-2020-1968 0.0 unknown
Hitachi Energy is aware of public reports of multiple vulnerabilities in open-source software components (OpenSSL and Node.JS) used in the FACTS Control Platform (FCP) product. Versions are available to remediate the identified vulnerabilities.CVE-2020-1968, CVE-2020-8172, CVE-2020-8174, CVE-2020-8201, CVE-2020-8252, CVE-2020-8265, and CVE-2020-8287 have been assigned to these vulnerabilities in open-source components used by FCP. A CVSS v3 base score of 8.1 has been calculated for the worst case; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H).
CVE-2021-35530 0.0 unknown
A vulnerability in the application authentication and authorization mechanism in the affected product depends on a token validation of the session identifier. The vulnerability allows an unauthorized modified message to be executed in the server, enabling an attacker to change an existing user 's password, and gain authorized access into the system.CVE-2021-35530 has been assigned to this vulnerability. A CVSS v3 base score of 6.0 has been assigned; the CVSS vector string is (AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L).
CVE-2019-17571 0.0 unknown
No description available.
CVE-2020-27749 0.0 unknown
A flaw was found in grub2 in versions prior to 2.06. Variable names present are expanded in the supplied command line into their corresponding variable contents, using a 1kB stack buffer for temporary storage, without sufficient bounds checking. If the function is called with a command line that references a variable with a sufficiently large payload, it is possible to overflow the stack buffer, corrupt the stack frame and control execution which could also circumvent Secure Boot protections. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVE-2022-2502 0.0 unknown
A vulnerability exists in the HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be exploited if the HCI 60870-5-104 is configured with IEC 62351-5 support and the CMU contains the license feature 'Advanced security' which must be ordered separately. If these preconditions are fulfilled, an attacker could exploit the vulnerability by sending a specially crafted message to the RTU500, causing the targeted RTU500 CMU to reboot. The vulnerability is caused by a missing input data validation, which eventually, if exploited, could cause an internal buffer to overflow in the HCI IEC 60870-5-104 function.
CVE-2022-22825 0.0 unknown
CVE-2022-22825. lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
CVE-2024-9928 0.0 unknown
No description available.

// Affected Products (810)

Vendor Product Asset Type Purdue Level Firmware
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Hitachi Energy Unknown scada_server
L2
--
Hitachi Energy Unknown rtu
L1
12.2
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
V4.4
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Wind River Unknown rtu
L1
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Hitachi Energy Unknown rtu
L1
13.6.1
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
ICONICS, Mitsubishi Electric Unknown hmi
L2
10.97.2
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Hitachi Energy Unknown rtu
L1
12.4.1-12.4.11
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown hmi
L2
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown hmi
L2
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown hmi
L2
--
Siemens Unknown hmi
L2
--
Siemens Unknown hmi
L2
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown hmi
L2
--
Siemens Unknown hmi
L2
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown hmi
L2
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown network_device -- --
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown historian
L3
--
Siemens Unknown hmi
L2
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- --
Siemens Unknown plc
L1
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Mitsubishi Electric Unknown network_device -- --
Mitsubishi Electric Unknown hmi
L2
1.275M
Mitsubishi Electric Iconics Digital Solutions Unknown historian
L3
10.97.2
Mitsubishi Electric Iconics Digital Solutions Unknown hmi
L2
10.97.2
Mitsubishi Electric Unknown hmi
L2
10.97.2
Mitsubishi Electric Unknown historian
L3
10.97.2
Mitsubishi Electric Unknown scada_server
L2
10.97.2
Mitsubishi Electric Iconics Digital Solutions Unknown scada_server
L2
10.97.2
Mitsubishi Electric Iconics Digital Solutions, Mitsubishi Electric Unknown hmi
L2
10.97.2
Hitachi Energy Unknown scada_server
L2
--
Siemens Unknown hmi
L2
--
Siemens Unknown hmi
L2
--
Siemens Unknown hmi
L2
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown hmi
L2
--
Siemens Unknown plc
L1
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown hmi
L2
--
Siemens Unknown hmi
L2
--
Siemens Unknown engineering_workstation
L3
--
Siemens Unknown plc
L1
V20.8
Siemens Unknown hmi
L2
--
Hitachi Energy Unknown rtu
L1
vers:all/*
Hitachi Energy Unknown rtu
L1
vers:all/*
Hitachi Energy Unknown rtu
L1
vers:all/*
Siemens Unknown network_device -- vers:all/*
Siemens Unknown network_device -- vers:all/*
Mitsubishi Electric Unknown network_device -- --
Mitsubishi Electric Unknown network_device -- --
Hitachi Energy Unknown rtu
L1
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown historian
L3
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown plc
L1
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- V4.1
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- V4.1
Siemens Unknown hmi
L2
--
Siemens Unknown network_device -- --
Siemens Unknown hmi
L2
--
Siemens Unknown network_device -- V4.1
Siemens Unknown network_device -- --
Siemens Unknown network_device -- V4.1
Siemens Unknown hmi
L2
--
Siemens Unknown plc
L1
--
Siemens Unknown hmi
L2
--
Siemens Unknown hmi
L2
--
Siemens Unknown network_device -- V4.1
Siemens Unknown plc
L1
--
Hitachi Energy Unknown rtu
L1
12.6.X
AVEVA Software, LLC Unknown scada_server
L2
--
Siemens Unknown scada_server
L2
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
ICONICS, Mitsubishi Electric Unknown historian
L3
--
ICONICS, Mitsubishi Electric Unknown scada_server
L2
--
ICONICS, Mitsubishi Electric Unknown hmi
L2
--
Hitachi Energy Unknown rtu
L1
=1.0.1.30
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown plc
L1
--
Siemens Unknown historian
L3
--
Siemens Unknown historian
L3
--
Siemens Unknown historian
L3
--
Schneider Electric Unknown network_device -- --
Schneider Electric Unknown plc
L1
--
Schneider Electric Unknown plc
L1
--
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --
Rockwell Automation Unknown plc
L1
28 - 32
Rockwell Automation Unknown plc
L1
28 - 32
Rockwell Automation Unknown plc
L1
32
Siemens Unknown network_device -- --
Siemens Unknown network_device -- --

// Remediations (1619)

Mitigation: Hitachi Energy recommends following 1MRK511518 MicroSCADA X Cyber Security Deployment Guideline
Hitachi Energy recommends following 1MRK511518 MicroSCADA X Cyber Security Deployment Guideline
Patch: For SYS600: 9.x upgrade to at least SYS600 version 10.4.
For SYS600: 9.x upgrade to at least SYS600 version 10.4.
Mitigation: For additional information and support users should contact Hitachi Energy.
For additional information and support users should contact Hitachi Energy.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or email.
Process control systems should not be used for internet surfing, instant messaging, or email.
Mitigation: Do not enable ICCP if it is not used.
Do not enable ICCP if it is not used.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000106
For more information, see Hitachi Energy advisory 8DBD000106
Mitigation: Separate process control systems from the internet and other networks using a firewall system with m
Separate process control systems from the internet and other networks using a firewall system with minimal open ports.
Patch: For SYS600: 10.x update to at least SYS600 version 10.4.
For SYS600: 10.x update to at least SYS600 version 10.4.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Patch: For more information, see Hitachi security advisory 8DBD000116.
For more information, see Hitachi security advisory 8DBD000116.
Patch: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails
Patch: Configure firewalls to protect process control networks from attacks originating from outside the ne
Configure firewalls to protect process control networks from attacks originating from outside the network
Patch: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system
Patch: Hitachi Energy recommends the following general mitigation factors and security practices:
Hitachi Energy recommends the following general mitigation factors and security practices:
Patch: Separate process control networks from other networks using a firewall system with a minimal number
Separate process control networks from other networks using a firewall system with a minimal number of ports exposed
Patch: Physically protect process control systems from direct access by unauthorized personnel
Physically protect process control systems from direct access by unauthorized personnel
Patch: Enforce proper password policies and processes
Enforce proper password policies and processes
Patch: Avoid directly connecting control systems to the internet
Avoid directly connecting control systems to the internet
Patch: Hitachi Energy has created an update to address the reported vulnerabilities and recommends users up
Hitachi Energy has created an update to address the reported vulnerabilities and recommends users update to at least GWS version 3.3.0.0
Mitigation: System default user accounts should be deleted.
System default user accounts should be deleted.
Mitigation: Users should have only the necessary rights required.
Users should have only the necessary rights required.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to process control systems.
Mitigation: For more information, see Hitachi Energy security advisory 8DBD000080
For more information, see Hitachi Energy security advisory 8DBD000080
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.
Patch: Additionally, Hitachi Energy recommends following product Security Deployment Guidelines. Recommende
Additionally, Hitachi Energy recommends following product Security Deployment Guidelines. Recommended practices for the affected product can be found in the TXpert Hub CoreTec 4 Software Manual.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Use a firewall system with the necessary ports open to separate process control systems from other n
Use a firewall system with the necessary ports open to separate process control systems from other networks.
Mitigation: Ensure users of the system have individual user accounts. Shared user accounts should not be used.
Ensure users of the system have individual user accounts. Shared user accounts should not be used.
Mitigation: Do not expose process control systems to the internet.
Do not expose process control systems to the internet.
Mitigation: For additional information and support please contact an ABB service organization. For contact infor
For additional information and support please contact an ABB service organization. For contact information, see https://new.abb.com/contact-centers or see ABB security advisory number ABBVU-PGGA-2018035.
Patch: ABB recommends users update their version of eSOMS to 6.0.3 or 6.1.
ABB recommends users update their version of eSOMS to 6.0.3 or 6.1.
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Mitigation: Where Wi-Fi access is required, wherever possible ensure physical access to the local area is restri
Where Wi-Fi access is required, wherever possible ensure physical access to the local area is restricted to approved staff only.
Mitigation: Hitachi ABB Power Grids recommends updating to firmware v8.9.4.9 or later, which resolves these vuln
Hitachi ABB Power Grids recommends updating to firmware v8.9.4.9 or later, which resolves these vulnerabilities. For additional information on these vulnerabilities, including update instructions, please see the Hitachi ABB Power Grids security advisory.
Mitigation: Use the Wi-Fi whitelist capability to restrict Wi-Fi access to only approved personnel.
Use the Wi-Fi whitelist capability to restrict Wi-Fi access to only approved personnel.
Patch: Disable the Wi-Fi access on any TropOS unit where local Wi-Fi access is not required. This is achiev
Disable the Wi-Fi access on any TropOS unit where local Wi-Fi access is not required. This is achieved by NOT enabling (or disabling) the local access SSID.
Mitigation: As the FragAttacks vulnerability is targeted at an end-user device and generally involves redirectio
As the FragAttacks vulnerability is targeted at an end-user device and generally involves redirection to fraudulent websites, the installation of comprehensive firewall capabilities on company end-user devices and servers will significantly reduce the likelihood of negative outcomes.
Mitigation: If you change the router settings, hide its presence on the Internet to make it difficult for unauth
If you change the router settings, hide its presence on the Internet to make it difficult for unauthorized access. (e.g., set to not respond to PING requests).
Mitigation: Start the MELSOFT GT Designer3 (GOT2000) and open the project data used in affected products.
Start the MELSOFT GT Designer3 (GOT2000) and open the project data used in affected products.
Mitigation: After writing the required package data to the GOT, refer to the “How to check the versions in use”
After writing the required package data to the GOT, refer to the “How to check the versions in use” and check the fixed versions.
Mitigation: Install system applications (extended function) “Wireless LAN” v01.45.000 or later.
Install system applications (extended function) “Wireless LAN” v01.45.000 or later.
Mitigation: Check the versions in use by referencing GOT2000 Series User's Manual (Utility) (SH-081195ENG), 6.9
Check the versions in use by referencing GOT2000 Series User's Manual (Utility) (SH-081195ENG), 6.9 Package Data Management - “Property operation.”
Mitigation: When using the wireless LAN communication unit as an access point, check if the wireless LAN communi
When using the wireless LAN communication unit as an access point, check if the wireless LAN communication unit settings are as follows.
Mitigation: Download and install the fixed version of MELSOFT GT Designer3 (GOT2000). Please contact a Mitsubish
Download and install the fixed version of MELSOFT GT Designer3 (GOT2000). Please contact a Mitsubishi Electric representative about MELSOFT GT Designer3 (GOT2000).
Mitigation: The latest version of the manual is available from Mitsubishi Electric FA Global Website.
The latest version of the manual is available from Mitsubishi Electric FA Global Website.
Mitigation: Update Antivirus software to the latest version.
Update Antivirus software to the latest version.
Mitigation: Check the following when using a computer or tablet, etc., on the same network.
Check the following when using a computer or tablet, etc., on the same network.
Mitigation: For the passphrase used for wireless LAN, avoid settings that can be guessed from the consecutive nu
For the passphrase used for wireless LAN, avoid settings that can be guessed from the consecutive numbers and MAC address, and set an unpredictable passphrase combining letters and numbers.
Mitigation: Fixed system applications (extended function) “Wireless LAN” is included in GT Designer3 Version 1 (
Fixed system applications (extended function) “Wireless LAN” is included in GT Designer3 Version 1 (GOT2000) v1.275M or later.
Mitigation: This does not include countermeasures for CVE-2020-26146
This does not include countermeasures for CVE-2020-26146
Mitigation: Select [Write to GOT] from [Communication] menu to write the required package data to the GOT. Pleas
Select [Write to GOT] from [Communication] menu to write the required package data to the GOT. Please refer to “4. COMMUNICATING WITH GOT” in the GT Designer3 (GOT2000) Screen Design Manual (SH-081220ENG).
Mitigation: Use the IP filter function*1 to restrict the accessible IP addresses. *1- Refer to GT Designer3 (GOT
Use the IP filter function*1 to restrict the accessible IP addresses. *1- Refer to GT Designer3 (GOT2000) Screen Design Manual (SH-081220ENG) “5.4.3 Setting the IP filter”
Mitigation: Use WPA or WPA2 as the security authentication method for wireless LAN.
Use WPA or WPA2 as the security authentication method for wireless LAN.
Mitigation: Set password for the router's Management portal, which is difficult to be identified.
Set password for the router's Management portal, which is difficult to be identified.
Mitigation: For users who use the affected products and versions, please update to the fixed versions
For users who use the affected products and versions, please update to the fixed versions
Mitigation: When using the wireless LAN communication unit as a station, check if the router settings are as fol
When using the wireless LAN communication unit as a station, check if the router settings are as follows: For the passphrase used for wireless LAN, avoid settings that can be guessed from the consecutive numbers and MAC address, and set an unpredictable passphrase combining letters and numbers. Use WPA or WPA2 as the security authentication method for wireless LAN.
Mitigation: As these vulnerabilities can only be exploited within Wi-Fi range, when possible reduce Wi-Fi transm
As these vulnerabilities can only be exploited within Wi-Fi range, when possible reduce Wi-Fi transmission power or make sure to have the devices in private areas with physical access controls
Patch: Update to V3.0.0 or later version
Update to V3.0.0 or later version
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Separated from other networks by means of a firewall system that has a minimal number of ports expos
Separated from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: Please see Hitachi Energy advisory 8DBD000057 for additional mitigation and update information.
Please see Hitachi Energy advisory 8DBD000057 for additional mitigation and update information.
Mitigation: Do not directly connect to the Internet.
Do not directly connect to the Internet.
Mitigation: Process control systems should not be used for Internet surfing, instant messaging, or receiving e-m
Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Patch: Hitachi Energy recommends users update to Transformer APM Edge v4.0. This version updates the softwa
Hitachi Energy recommends users update to Transformer APM Edge v4.0. This version updates the software components to remediate this vulnerability.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: Only build and run applications from trusted sources.
Only build and run applications from trusted sources.
Patch: Update to V3.1.5 or later version
Update to V3.1.5 or later version
Patch: Update to V3.1 or later version
Update to V3.1 or later version
Patch: AFS66X-S, AFS660-C, AFS66X-B, AFS670-V20 devices: For all vulnerabilities, apply mitigation strategy
AFS66X-S, AFS660-C, AFS66X-B, AFS670-V20 devices: For all vulnerabilities, apply mitigation strategy as described in Hitachi Energy's general mitigation factors below or update to upcoming AFS66X, AFS670-V20 7.1.08 FW when released. Disable HTTP/HTTPS server or restrict access to HTTP/HTTPS to trusted IP addresses. Disable IEC61850-MMS server or restrict access to IEC61850-MMS to trusted IP addresses.
Mitigation: Hitachi energy recommends the following actions:
Hitachi energy recommends the following actions:
Mitigation: For more information, please visit Hitachi Energy's Advisory.
For more information, please visit Hitachi Energy's Advisory.
Patch: AFF66X FW 03.0.02 and earlier: For all vulnerabilities, apply mitigation strategy as described in Hi
AFF66X FW 03.0.02 and earlier: For all vulnerabilities, apply mitigation strategy as described in Hitachi Energy's general mitigation factors below or update to upcoming AFF66X 04.x.xx FW when released.
Mitigation: Hitachi Energy's general mitigation factors:Security practices and firewall configurations can help
Hitachi Energy's general mitigation factors:Security practices and firewall configurations can help protect a process control network from attacks that originate from outside the network. Such practices include that process control systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system that has a minimal number of ports exposed, and others that have to be evaluated case by case. Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Patch: AFS65X, AFS67X, AFR677 devices: For all vulnerabilities, apply mitigation strategy as described in H
AFS65X, AFS67X, AFR677 devices: For all vulnerabilities, apply mitigation strategy as described in Hitachi Energy's general mitigation factors below or update to AFS65X, AFS67X, AFR677 09.1.08 FW. Disable HTTP/HTTPS server or restrict access to HTTP/HTTPS to trusted IP addresses. Disable IEC61850-MMS server.
Mitigation: NTP can be upgraded to NTP-4.2.7p26 or later that removes MONLIST support and is replaced with the m
NTP can be upgraded to NTP-4.2.7p26 or later that removes MONLIST support and is replaced with the more secure MRUNLIST function.
Mitigation: Hitachi Energy recommends users follow recommended security practices and firewall configurations, w
Hitachi Energy recommends users follow recommended security practices and firewall configurations, which can help protect a process control network from attacks that originate from outside the network. Such practices include that process control systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system that has a minimal number of ports exposed, and others that have to be evaluated case by case. Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Hitachi Energy recommends users implement countermeasures for DoS with proper firewall rule sets and
Hitachi Energy recommends users implement countermeasures for DoS with proper firewall rule sets and filters, as well as to apply mitigation as described in the Mitigation Factors/WorkaroundsSection.
Mitigation: Hitachi Energy has identified the following specific workarounds and mitigations users can apply to
Hitachi Energy has identified the following specific workarounds and mitigations users can apply to reduce risk:
Mitigation: Update to Version 8.9.6 or later when available
Update to Version 8.9.6 or later when available
Mitigation: For more information, see Hitachi Energy Cybersecurity Advisory "DoS Vulnerability in Hitachi Energy
For more information, see Hitachi Energy Cybersecurity Advisory "DoS Vulnerability in Hitachi Energy's TropOS core routers and edge nodes."
Patch: Update to version 10.5 vulnerability patch 2025_01 or Update to version 10.6
Update to version 10.5 vulnerability patch 2025_01 or Update to version 10.6
Mitigation: Follow the mitigation strategy as described in the Mitigation Factors/Workarounds section
Follow the mitigation strategy as described in the Mitigation Factors/Workarounds section
Mitigation: Follow the mitigation strategy as described in the Mitigation Factors/Workarounds section
Follow the mitigation strategy as described in the Mitigation Factors/Workarounds section
Patch: Update to version 10.5 vulnerability patch 2025_01 or Update to version 10.6
Update to version 10.5 vulnerability patch 2025_01 or Update to version 10.6
Patch: Update to version 10.5 vulnerability patch 2025_01 or Update to version 10.6
Update to version 10.5 vulnerability patch 2025_01 or Update to version 10.6
Patch: Update to version 10.4 vulnerability patch 2025_01 or Update to version 10.6
Update to version 10.4 vulnerability patch 2025_01 or Update to version 10.6
Patch: Upgrade to version 3.4.0.0 Or apply general mitigation factors (Due to complexity of individual impl
Upgrade to version 3.4.0.0 Or apply general mitigation factors (Due to complexity of individual implementation of project, contact local account team for further information on possible upgrades and mitigation strategies.)
Patch: Apply the patch HF1 to HF6 sequentially Or apply general mitigation factors (Due to complexity of in
Apply the patch HF1 to HF6 sequentially Or apply general mitigation factors (Due to complexity of individual implementation of project, contact local account team for further information on possible upgrades and mitigation strategies.)
Mitigation: Apply the patch HF3 to HF6 sequentially Or apply general mitigation factors (Due to complexity of in
Apply the patch HF3 to HF6 sequentially Or apply general mitigation factors (Due to complexity of individual implementation of project, contact local account team for further information on possible upgrades and mitigation strategies.)
Patch: Hitachi Energy RTU500 series CMU Firmware 12.7.7
Hitachi Energy RTU500 series CMU Firmware 12.7.7
Patch: Hitachi Energy RTU500 series CMU Firmware 12.0.15
Hitachi Energy RTU500 series CMU Firmware 12.0.15
Patch: Hitachi Energy RTU500 series CMU Firmware 12.4.12
Hitachi Energy RTU500 series CMU Firmware 12.4.12
Patch: Hitachi Energy RTU500 series CMU Firmware 13.5.2
Hitachi Energy RTU500 series CMU Firmware 13.5.2
Patch: Hitachi Energy RTU500 series CMU Firmware 12.6.10
Hitachi Energy RTU500 series CMU Firmware 12.6.10
Patch: Hitachi Energy RTU500 series CMU Firmware 12.2.12
Hitachi Energy RTU500 series CMU Firmware 12.2.12
Mitigation: Hitachi Energy recommends that customers follow the "Remote Terminal Units Security Deployment Guide
Hitachi Energy recommends that customers follow the "Remote Terminal Units Security Deployment Guideline", as well as to apply mitigation as described below.
Patch: Hitachi Energy RTU500 series CMU Firmware 13.2.7
Hitachi Energy RTU500 series CMU Firmware 13.2.7
Mitigation: Hitachi Energy recommends users use recommended security practices and firewall configurations to he
Hitachi Energy recommends users use recommended security practices and firewall configurations to help protect a process control network from attacks that originate from outside the network. Such practices include that process control systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system that has a minimal number of ports exposed, and others that have to be evaluated case by case. Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: For additional information and support please contact your product provider or Hitachi Energy servic
For additional information and support please contact your product provider or Hitachi Energy service organization. For contact information, see https://www.hitachienergy.com/contact-us/ for Hitachi Energy contact-centers.
Mitigation: Hitachi Energy recommends that users update to the respective series CMU firmware version as below.
Hitachi Energy recommends that users update to the respective series CMU firmware version as below.
Mitigation: For more information, see Hitachi Energy Cybersecurity Advisory "DoS Vulnerability in Hitachi Energy
For more information, see Hitachi Energy Cybersecurity Advisory "DoS Vulnerability in Hitachi Energy's RTU500 series products"
Patch: Hitachi Energy RTU500 series CMU Firmware 13.4.4
Hitachi Energy RTU500 series CMU Firmware 13.4.4
Patch: Update to version 9.8.1.4
Update to version 9.8.1.4
Mitigation: APM should only be used to access the internet for authorized information. Portable computers and re
APM should only be used to access the internet for authorized information. Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000115.
For more information, see Hitachi Energy advisory 8DBD000115.
Patch: When applicable, Hitachi Energy recommends users update to Lumada APM Edge v6.3 at the earliest conv
When applicable, Hitachi Energy recommends users update to Lumada APM Edge v6.3 at the earliest convenience.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Ensure the firewall system only has necessary ports exposed.
Ensure the firewall system only has necessary ports exposed.
Mitigation: Ensure process control systems have no direct connections to the internet.
Ensure process control systems have no direct connections to the internet.
Mitigation: Use firewall systems to separate process control systems from other networks.
Use firewall systems to separate process control systems from other networks.
Mitigation: The following products are discontinued as of October 1, 2019. Siemens recommends upgrading hardware
The following products are discontinued as of October 1, 2019. Siemens recommends upgrading hardware to successor products from the SCALANCE SC-600 family and applying patches when available, or following the manual mitigations addressed below.SCALANCE S602: Update to v4.1 (Update is only available via Siemens Support contact)
Mitigation: ABB recommends using the following security practices and firewall configurations to help protect pr
ABB recommends using the following security practices and firewall configurations to help protect process control networks from attacks that originate from outside the network: Physically protect control systems from direct access by unauthorized personnel. Do not allow direct connections from control systems to the Internet. Separate control systems from other networks by deploying a firewall that has a minimal number of ports exposed. Do not use process control systems for Internet surfing, instant messaging, or receiving emails. Carefully scan portable computers and removable storage media for viruses before they are connected to a control system.
Mitigation: ABB has corrected the problems in PCM600 Version 2.7. ABB recommends that users apply the update at
ABB has corrected the problems in PCM600 Version 2.7. ABB recommends that users apply the update at earliest convenience.
Mitigation: ABB provides more information on recommended practices in 1MRS758440, Protection and Control IED Man
ABB provides more information on recommended practices in 1MRS758440, Protection and Control IED Manager PCM600 Cyber Security Deployment Guideline, which can be found at the following location: (http://search.abb.com/library/Download.aspx?DocumentID=1MRS758440&Action=Launch)
Mitigation: TRON Forum reports they only publish the specification for ITRON RTOS. Various implementations are u
TRON Forum reports they only publish the specification for ITRON RTOS. Various implementations are used by many users world-wide and are created by various implementors (some commercial, and some academic and some government) according the specification document. TRON Forum, the caretaker of the ITRON specification, has not endorsed the use of any particular TCP/IP stack including one from Interpeak. The choice of TCP/IP stack is up to the RTOS vendor and application developers, and thus each application user needs to check whether TCP/IP stack developed by Interpeak is used inside their application. TRON Forum will send out a preliminary warning to members by mailing list to notify implementors of the reported vulnerabilities.
Mitigation: ExtremeNetworks
ExtremeNetworks
Mitigation: Additional vendors affected by the reported vulnerabilities have also released security advisories r
Additional vendors affected by the reported vulnerabilities have also released security advisories related to their affected products. Those advisories are as follows:
Mitigation: Avaya
Avaya
Mitigation: ABB
ABB
Mitigation: Woodward
Woodward
Mitigation: Belden Industrial Devices
Belden Industrial Devices
Mitigation: ZebOS by IP Infusion has not yet responded to CISA inquiries.
ZebOS by IP Infusion has not yet responded to CISA inquiries.
Mitigation: Siemens (Power Meters)
Siemens (Power Meters)
Mitigation: All affected products: For more detailed information on the vulnerabilities and the mitigating contr
All affected products: For more detailed information on the vulnerabilities and the mitigating controls, please see the Wind River advisory at: https://www.windriver.com/security/announcements/tcp-ip-network-stack-ipnet-urgent11/
Mitigation: Schneider Electric
Schneider Electric
Mitigation: Microsoft states they have no history of support or integration work to include IPnet and have not r
Microsoft states they have no history of support or integration work to include IPnet and have not released a version of ThreadX bundled with IPnet. Microsoft does caution that some hardware makers could have used ThreadX and a custom set IPnet in the hardware.
Mitigation: Xylem
Xylem
Mitigation: All affected products: To obtain patches, email [email protected] and indicate the VxWorks major v
All affected products: To obtain patches, email [email protected] and indicate the VxWorks major version for which you need source patches.
Mitigation: Green Hills Software has proactively informed affected users and offers consulting services to imple
Green Hills Software has proactively informed affected users and offers consulting services to implement mitigations.
Mitigation: Siemens (SIPROTEC 5)
Siemens (SIPROTEC 5)
Mitigation: All affected products: To obtain patches, email [email protected] and indicate the VxWorks major v
All affected products: To obtain patches, email [email protected] and indicate the VxWorks major version for which you need source patches.
Mitigation: Rockwell Automation
Rockwell Automation
Mitigation: Wind River has identified the following specific workarounds and mitigations users can apply to redu
Wind River has identified the following specific workarounds and mitigations users can apply to reduce risk:
Mitigation: NetApp
NetApp
Mitigation: TrendMicro IPS
TrendMicro IPS
Mitigation: Enea has no IPNet customers on support contract in the United States.
Enea has no IPNet customers on support contract in the United States.
Mitigation: Mitsubishi Electric
Mitsubishi Electric
Mitigation: Xerox Printers
Xerox Printers
Mitigation: Siemens (RUGGEDCOM)
Siemens (RUGGEDCOM)
Mitigation: IDEC Corporation
IDEC Corporation
Mitigation: Sonicwall Firewalls
Sonicwall Firewalls
Patch: For more detailed information on the vulnerabilities and the mitigating controls, please see the Win
For more detailed information on the vulnerabilities and the mitigating controls, please see the Wind River advisory.
Patch: TRON Forum reports they only publish the specification for ITRON RTOS. Various implementations are u
TRON Forum reports they only publish the specification for ITRON RTOS. Various implementations are used by many users world-wide and are created by various implementors (some commercial, and some academic and some government) according the specification document. TRON Forum, the caretaker of the ITRON specification, has not endorsed the use of any particular TCP/IP stack including one from Interpeak. The choice of TCP/IP stack is up to the RTOS vendor and application developers, and thus each application user needs to check whether TCP/IP stack developed by Interpeak is used inside their application. TRON Forum will send out a preliminary warning to members by mailing list to notify implementors of the reported vulnerabilities.
Patch: Enea has no IPNet customers on support contract in the United States.
Enea has no IPNet customers on support contract in the United States.
Patch: Green Hills Software has proactively informed affected users and offers consulting services to imple
Green Hills Software has proactively informed affected users and offers consulting services to implement mitigations.
Patch: Microsoft states they have no history of support or integration work to include IPnet and have not r
Microsoft states they have no history of support or integration work to include IPnet and have not released a version of ThreadX bundled with IPnet. Microsoft does caution that some hardware makers could have used ThreadX and a custom set IPnet in the hardware.
Patch: Wind River has produced controls and patches to mitigate the reported vulnerabilities. To obtain pat
Wind River has produced controls and patches to mitigate the reported vulnerabilities. To obtain patches, email [email protected] and indicate the VxWorks major version for which you need source patches.
Patch: Additional vendors affected by the reported vulnerabilities have also released security advisories r
Additional vendors affected by the reported vulnerabilities have also released security advisories related to their affected products. Those advisories are as follows:
Patch: Update to V4.41 or later version
Update to V4.41 or later version
Mitigation: Users may contact Exacq technical support for assistance with updating their operating system.
Users may contact Exacq technical support for assistance with updating their operating system.
Mitigation: For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI
For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI-PSA-2021-04
Mitigation: Johnson Controls recommends users install the latest security updates for the Ubuntu Linux operating
Johnson Controls recommends users install the latest security updates for the Ubuntu Linux operating system.
Patch: Johnson Controls recommends users update to Tyco AI v1.3, which includes the updates for the SUSE Li
Johnson Controls recommends users update to Tyco AI v1.3, which includes the updates for the SUSE Linux operating system. Users are encouraged to contact Tyco technical support for assistance.
Mitigation: American Dynamics is a Johnson Controls brand. Users may contact American Dynamics technical support
American Dynamics is a Johnson Controls brand. Users may contact American Dynamics technical support for assistance with updating their operating system. https://www.americandynamics.net/Support
Patch: Johnson Controls recommends users upgrade to the latest VideoEdge release (currently 5.7.0). If this
Johnson Controls recommends users upgrade to the latest VideoEdge release (currently 5.7.0). If this is not possible, a sudo patch is available from the American Dynamics website for VideoEdge 5.4.2 and 5.6.0. VideoEdge 5.4.1 and older cannot be patched and should be upgraded.
Mitigation: Insight, upgrade to Version 1.4.0
Insight, upgrade to Version 1.4.0
Mitigation: Johnson Controls recommends taking steps to minimize risks to all building automation systems.
Johnson Controls recommends taking steps to minimize risks to all building automation systems.
Mitigation: For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI
For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI-PSA-2021-13
Mitigation: Pro 2 is EOL
Pro 2 is EOL
Patch: Pro Gen 3: upgrade to Version 2.8.0
Pro Gen 3: upgrade to Version 2.8.0
Mitigation: Flex Gen 2: upgrade to Version 1.9.4
Flex Gen 2: upgrade to Version 1.9.4
Mitigation: Refer to Avoiding Social Engineering and Phishing Attacks for more information on social engineering
Refer to Avoiding Social Engineering and Phishing Attacks for more information on social engineering attacks.
Mitigation: For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI
For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI-PSA-2021-20 v1
Mitigation: Note: AC2000 v10.6 includes a fixed version of sudo.
Note: AC2000 v10.6 includes a fixed version of sudo.
Mitigation: Johnson Controls recommends users with AC2000 versions prior to 10.6 simply remove sudo. To do this,
Johnson Controls recommends users with AC2000 versions prior to 10.6 simply remove sudo. To do this, users may either contact a CEM support team or login to their Linux servers as root and type the following command: rpm -e sudo.
Mitigation: Refer to Recognizing and Avoiding Email Scams for more information on avoiding email scams.
Refer to Recognizing and Avoiding Email Scams for more information on avoiding email scams.
Mitigation: Do not click web links or open unsolicited attachments in email messages.
Do not click web links or open unsolicited attachments in email messages.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Do not expose process control systems to the internet.
Do not expose process control systems to the internet.
Patch: Additionally, Hitachi Energy recommends following product Security Deployment Guidelines. Recommende
Additionally, Hitachi Energy recommends following product Security Deployment Guidelines. Recommended practices for the affected product can be found in the TXpert Hub CoreTec 4 Software Manual.
Mitigation: Remove secure remote access (SSH) as described in the system hardening section of the security deplo
Remove secure remote access (SSH) as described in the system hardening section of the security deployment guidelines. This will not remove the vulnerable component, but it will remove the ability of an attacker to remotely access the command line interface and exploit the vulnerability.
Mitigation: Use a firewall system with the necessary ports open to separate process control systems from other n
Use a firewall system with the necessary ports open to separate process control systems from other networks.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.
Mitigation: For more information, see Hitachi security advisory 8DBD000081
For more information, see Hitachi security advisory 8DBD000081
Patch: TXpert Hub CoreTec 4: version 2.3.0
TXpert Hub CoreTec 4: version 2.3.0
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to process control systems.
Patch: Update to V3.0 or later version
Update to V3.0 or later version
Patch: Update to V8.7.1.3 or later version
Update to V8.7.1.3 or later version
Mitigation: Do not open or access suspicious attachment file or linked URL.
Do not open or access suspicious attachment file or linked URL.
Patch: Update to CMU Firmware version 13.7.8
Update to CMU Firmware version 13.7.8
Patch: Update to CMU Firmware version 13.8.2
Update to CMU Firmware version 13.8.2
Mitigation: Follow general mitigation factors/workarounds
Follow general mitigation factors/workarounds
Patch: Update to V4.0 or later version
Update to V4.0 or later version
Mitigation: Hitachi Energy recommends security practices and firewall configurations to help protect a process c
Hitachi Energy recommends security practices and firewall configurations to help protect a process control network from attacks that originate from outside the network. Such practices include ensuring that process control systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system that has a minimal number of ports exposed, and others that have to be evaluated case by case. Process control systems should not be used for browsing the Internet, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: For more information, see the associated Hitachi Energy cybersecurity advisory 8DBD000214 Multiple V
For more information, see the associated Hitachi Energy cybersecurity advisory 8DBD000214 Multiple Vulnerabilities in Hitachi Energy TropOS 4th Gen Products: PDF Version, CSAF Version.
Mitigation: For more information, see the associated Hitachi Energy cybersecurity advisory 8DBD000214 Multiple V
For more information, see the associated Hitachi Energy cybersecurity advisory 8DBD000214 Multiple Vulnerabilities in Hitachi Energy TropOS 4th Gen Products: PDF Version, CSAF Version.
Mitigation: Hitachi Energy recommends users update to version 8.9.7.0 at the earliest convenience. While reviewi
Hitachi Energy recommends users update to version 8.9.7.0 at the earliest convenience. While reviewing the immediate recommended actions, assess the risk exposure of affected products within the operational environment and update or upgrade if necessary.
Mitigation: Hirschmann recommends updating HiOS products to Version 07.0.03 or higher and HiSecOS products to Ve
Hirschmann recommends updating HiOS products to Version 07.0.03 or higher and HiSecOS products to Version 03.3.00 or higher.
Mitigation: For additional resources, please go to https://www.belden.com/security.
For additional resources, please go to https://www.belden.com/security.
Mitigation: Hirschmann also recommends, as a workaround, users either use the “IP Access Restriction” feature to
Hirschmann also recommends, as a workaround, users either use the “IP Access Restriction” feature to restrict HTTP and HTTPS to trusted IP addresses, or disable the HTTP and HTTPS server.
Mitigation: For more information regarding this vulnerability and the associated mitigations, please see Belden
For more information regarding this vulnerability and the associated mitigations, please see Belden security bulletin number BSECV-2020-01.
Mitigation: Hitachi Energy does not recommend process control systems be used for internet surfing, instant mess
Hitachi Energy does not recommend process control systems be used for internet surfing, instant messaging, or receiving emails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Ensuring process control systems have no direct connections to the Internet
Ensuring process control systems have no direct connections to the Internet
Mitigation: Ensuring process control systems are physically protected from unauthorized direct access
Ensuring process control systems are physically protected from unauthorized direct access
Mitigation: Use the “IP Access Restriction” feature to restrict HTTP and HTTPS traffic to trusted IP addresses.
Use the “IP Access Restriction” feature to restrict HTTP and HTTPS traffic to trusted IP addresses.
Mitigation: Hitachi Energy recommends users follow the recommended security practices and firewall configuration
Hitachi Energy recommends users follow the recommended security practices and firewall configurations to help protect from outside attacks. Recommended security practices include:
Mitigation: Disable the HTTP and HTTPS server.
Disable the HTTP and HTTPS server.
Mitigation: Hitachi Energy for AFF660 FW and AFF665 FW versions 03.0.02 and prior recommends users to implement
Hitachi Energy for AFF660 FW and AFF665 FW versions 03.0.02 and prior recommends users to implement the following security measures:
Mitigation: For more information, see Hitachi Energy's security advisory 8DBD000122.
For more information, see Hitachi Energy's security advisory 8DBD000122.
Mitigation: Using a firewall system to separate process control systems from separated from other networks. The
Using a firewall system to separate process control systems from separated from other networks. The firewall system should have only the necessary ports open.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000122.
For more information, see Hitachi Energy advisory 8DBD000122.
Mitigation: Separate process control systems from the internet and other networks using a firewall system with m
Separate process control systems from the internet and other networks using a firewall system with minimal open ports.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or email.
Process control systems should not be used for internet surfing, instant messaging, or email.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system.
Mitigation: Hitachi Energy recommends users update to 7.1.05 or later or apply mitigation strategies.
Hitachi Energy recommends users update to 7.1.05 or later or apply mitigation strategies.
Patch: Portable computers and removable storage media should be carefully scanned for viruses prior connect
Portable computers and removable storage media should be carefully scanned for viruses prior connection to a control system.
Patch: For more information, see Hitachi security advisory 8DBD000138.
For more information, see Hitachi security advisory 8DBD000138.
Patch: Practice principles of least privileges to minimize permissions and accesses to SDM600 related resou
Practice principles of least privileges to minimize permissions and accesses to SDM600 related resources.
Patch: Hitachi Energy recommends applying the following mitigations:
Hitachi Energy recommends applying the following mitigations:
Patch: SDM600 versions prior to v1.3.0 (Build Nr. 1.3.0.1339): Apply workaround detailed below.
SDM600 versions prior to v1.3.0 (Build Nr. 1.3.0.1339): Apply workaround detailed below.
Patch: All SDM600 versions prior to v1.2 FP3 HF4 (Build Nr. 1.2.23000.291): Update to v1.3.0.1339
All SDM600 versions prior to v1.2 FP3 HF4 (Build Nr. 1.2.23000.291): Update to v1.3.0.1339
Patch: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Patch: Separate process control systems from other networks using a firewall system with a minimal number o
Separate process control systems from other networks using a firewall system with a minimal number of open ports.
Patch: Hitachi Energy recommends the following security practices and firewall configurations to help prote
Hitachi Energy recommends the following security practices and firewall configurations to help protect a process control network from attacks originating from outside the network:
Patch: Do not directly connect control systems networks to the internet.
Do not directly connect control systems networks to the internet.
Patch: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.
Patch: Follow security practices defined in SDM600 security deployment guidelines.
Follow security practices defined in SDM600 security deployment guidelines.
Mitigation: Apply general mitigation factors
Apply general mitigation factors
Mitigation: Deny nemadm account for ssh logins by configuring DenyUsers in /etc/ssh/sshd_config
Deny nemadm account for ssh logins by configuring DenyUsers in /etc/ssh/sshd_config
Patch: Update to V2.17 or later version. Contact customer support to obtain the update
Update to V2.17 or later version. Contact customer support to obtain the update
Mitigation: Mitigating factors describe conditions and circumstances that make an attack that exploits the vuln
Mitigating factors describe conditions and circumstances that make an attack that exploits the vulnerability difficult or less likely to succeed. The following mitigations are recommended. 5. Filter specific ICMP packets from external systems (ICMP type 13 and 14) by firewall for not exposing the system time. Refer to section General security recommendations for additional advice on how to keep your system secure.
Mitigation: CVE-2023-0286: Disable CRL (certification revocation list) checking, if possible
CVE-2023-0286: Disable CRL (certification revocation list) checking, if possible
Patch: Update to V8.10.0.9 or later version The update is available upon request from customer support
Update to V8.10.0.9 or later version The update is available upon request from customer support
Patch: RTU500 series CMU Firmware version 12.0.1 - 12.0.14: Update to CMU Firmware version 12.0.15* (Planne
RTU500 series CMU Firmware version 12.0.1 - 12.0.14: Update to CMU Firmware version 12.0.15* (Planned Update)
Patch: RTU500 series CMU Firmware version 12.2.1 - 12.2.11: Update to CMU Firmware version 12.2.12* (Planne
RTU500 series CMU Firmware version 12.2.1 - 12.2.11: Update to CMU Firmware version 12.2.12* (Planned Update)
Patch: RTU500 series CMU Firmware version 12.6.1 - 12.6.8: Update to CMU Firmware version 12.6.9
RTU500 series CMU Firmware version 12.6.1 - 12.6.8: Update to CMU Firmware version 12.6.9
Patch: RTU500 series CMU Firmware version 13.2.1 - 13.2.5: Update to CMU Firmware version 13.2.6
RTU500 series CMU Firmware version 13.2.1 - 13.2.5: Update to CMU Firmware version 13.2.6
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: For more information, see Hitachi Energy's Security Advisories:
For more information, see Hitachi Energy's Security Advisories:
Mitigation: Do not allow process control systems direct connections to the internet.
Do not allow process control systems direct connections to the internet.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: Recommended security practices and firewall configurations can help protect a process control networ
Recommended security practices and firewall configurations can help protect a process control network from attacks originating from outside the network including.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.
Mitigation: Hitachi Energy has released the following mitigations/fixes for CVE-2022-23937, CVE-2022-0778, CVE-2
Hitachi Energy has released the following mitigations/fixes for CVE-2022-23937, CVE-2022-0778, CVE-2021-3711, and CVE-2021-3712:
Mitigation: Separate process control systems from other networks by means of a firewall system that has a minima
Separate process control systems from other networks by means of a firewall system that has a minimal number of ports exposed.
Patch: RTU500 series CMU Firmware version 12.7.1 - 12.7.5: Update to CMU Firmware version 12.7.6
RTU500 series CMU Firmware version 12.7.1 - 12.7.5: Update to CMU Firmware version 12.7.6
Patch: RTU500 series CMU Firmware version 12.4.1 - 12.4.11: Update to CMU Firmware version 12.4.12* (Planne
RTU500 series CMU Firmware version 12.4.1 - 12.4.11: Update to CMU Firmware version 12.4.12* (Planned Update)
Patch: RTU500 series CMU Firmware version 13.3.1 - 13.3.3: Update to CMU Firmware version 13.3.4* (Planned
RTU500 series CMU Firmware version 13.3.1 - 13.3.3: Update to CMU Firmware version 13.3.4* (Planned Update)
Patch: RTU500 series CMU Firmware version 13.4.1: Update to CMU Firmware version 13.4.2
RTU500 series CMU Firmware version 13.4.1: Update to CMU Firmware version 13.4.2
Mitigation: 8DBD000150
8DBD000150
Mitigation: 8DBD000153
8DBD000153
Workaround: Only build and run applications from trusted sources
Only build and run applications from trusted sources
Patch: Update to V1.1 or later version
Update to V1.1 or later version
Patch: Update to V3.3.4 or later version
Update to V3.3.4 or later version
Patch: Update to V2.9.7 or later version
Update to V2.9.7 or later version
Patch: Update to V4.7 or later version
Update to V4.7 or later version
Patch: Update to V30.1.0 or later version
Update to V30.1.0 or later version
Patch: Update to V30.1.0 or later version
Update to V30.1.0 or later version
Patch: Update to V3.0.3 or later version
Update to V3.0.3 or later version
Patch: Update to V21.9.7 or later version
Update to V21.9.7 or later version
Patch: Update to V2.9.7 or later version
Update to V2.9.7 or later version
Patch: Update to V21.9.7 or later version
Update to V21.9.7 or later version
Patch: Update to V6.0 or later version
Update to V6.0 or later version
Patch: Update to V3.0.3 or later version
Update to V3.0.3 or later version
Mitigation: Disable CRL (certification revocation list) checking, if possible
Disable CRL (certification revocation list) checking, if possible
Mitigation: Hitachi Energy reported that Lumada APM Edge relies on the HAProxy service (a pre-requisite componen
Hitachi Energy reported that Lumada APM Edge relies on the HAProxy service (a pre-requisite component) as an API gateway, so it must be exposed to the end-users via network. For Lumada APM Edge to be accessible to the end-users, it is crucial for this service, which also utilizes OpenSSL libraries, to be updated along with its underlying operating system.
Patch: Hitachi Energy has fixed the vulnerabilities for Lumada APM in version 6.5.0.2 and later and recomme
Hitachi Energy has fixed the vulnerabilities for Lumada APM in version 6.5.0.2 and later and recommends users update their systems to the appropriate version. Lumada APM Edge versions 4.0 and prior are no longer supported and are considered End-of-Life.
Mitigation: Recommended security practices and firewall configurations can help protect a process control networ
Recommended security practices and firewall configurations can help protect a process control network fromattacks that originate from outside the network. Such practices include that process control systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system that has a minimal number of ports exposed, have security updates applied to installed software components and others that must be evaluated case by case. Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000169.
For more information, see Hitachi Energy advisory 8DBD000169.
Patch: Update to V3.1.5 or later version
Update to V3.1.5 or later version
Mitigation: OPC UA Server Unit: Use within a LAN and block access from untrusted networks and hosts through fire
OPC UA Server Unit: Use within a LAN and block access from untrusted networks and hosts through firewalls. Restrict physical access to the product, as well as to computers and network devices located within the same network as the product. Use a firewall or virtual private network (VPN), etc. to prevent unauthorized access when Internet access is required. Set a security policy other than 'None' in security setting function to prevent unauthorized access. For details on security setting function, please refer to the MELSEC iQ-R OPC UA Server Unit User's Manual (Application), section 1.1 "OPC UA Server Function".
Mitigation: FX5-OPC: Use within a LAN and block access from untrusted networks and hosts through firewalls. Rest
FX5-OPC: Use within a LAN and block access from untrusted networks and hosts through firewalls. Restrict physical access to the product, as well as to computers and network devices located within the same network as the product. Use a firewall or virtual private network (VPN), etc. to prevent unauthorized access when Internet access is required. Use the IP filter function to block access from untrusted hosts. For details on the IP filter function, please refer to the MELSEC iQ-F FX5 OPC UA Module User's Manual section 4.4 "IP Filter." Do not import untrusted certificates.
Mitigation: MX OPC Server UA: Use recommended mitigations/workarounds
MX OPC Server UA: Use recommended mitigations/workarounds
Mitigation: Mitsubishi Electric recommends that users take the following mitigation measures to minimize the ris
Mitsubishi Electric recommends that users take the following mitigation measures to minimize the risk of exploiting these vulnerabilities:
Mitigation: Mitsbuishi Electric recommends that users update their products to the following versions:
Mitsbuishi Electric recommends that users update their products to the following versions:
Mitigation: OPC UA server unit: Use recommended mitigations/workarounds
OPC UA server unit: Use recommended mitigations/workarounds
Mitigation: For additional details, see the Mitsubishi Electric advisory 2023-018.
For additional details, see the Mitsubishi Electric advisory 2023-018.
Mitigation: MX OPC Server UA: Use within a LAN and block access from untrusted networks and hosts through firewa
MX OPC Server UA: Use within a LAN and block access from untrusted networks and hosts through firewalls. Restrict physical access to the product, as well as to computers and network devices located within the same network as the product. Use a firewall or virtual private network (VPN), etc. to prevent unauthorized access when Internet access is required.
Mitigation: GT SoftGOT2000: Version 1.295H or later
GT SoftGOT2000: Version 1.295H or later
Mitigation: FX5-OPC: Version 1.010 or later
FX5-OPC: Version 1.010 or later
Mitigation: GT SoftGOT2000 and OPC UA Data Collector: Do not load untrusted certificate revocation lists (CRLs).
GT SoftGOT2000 and OPC UA Data Collector: Do not load untrusted certificate revocation lists (CRLs).
Mitigation: OPC UA data collector: 1.05F or later
OPC UA data collector: 1.05F or later
Patch: Update to V2.0 SP1 or later version
Update to V2.0 SP1 or later version
Patch: Upgrade Palo Alto Networks Virtual NGFW V11.1.2-h3. Contact customer support to receive patch and up
Upgrade Palo Alto Networks Virtual NGFW V11.1.2-h3. Contact customer support to receive patch and update information
Patch: Upgrade Palo Alto Networks Virtual NGFW V11.1.2-h3. Contact customer support to receive patch and up
Upgrade Palo Alto Networks Virtual NGFW V11.1.2-h3. Contact customer support to receive patch and update information
Patch: Update to V2.4.8 or later version
Update to V2.4.8 or later version
Patch: Update to V2.3 or later version
Update to V2.3 or later version
Patch: Update to V6.6.1 or later version
Update to V6.6.1 or later version
Patch: Update to V2.17 or later version. Contact customer support to obtain the update
Update to V2.17 or later version. Contact customer support to obtain the update
Mitigation: Mitigating factors describe conditions and circumstances that make an attack that exploits the vuln
Mitigating factors describe conditions and circumstances that make an attack that exploits the vulnerability difficult or less likely to succeed. The following mitigations are recommended. 5. Filter specific ICMP packets from external systems (ICMP type 13 and 14) by firewall for not exposing the system time. Refer to section General security recommendations for additional advice on how to keep your system secure.
Patch: If IEC62351-3 secure for IEC104/DNP3 is used, then update to version 6.6.0 or latest
If IEC62351-3 secure for IEC104/DNP3 is used, then update to version 6.6.0 or latest
Patch: If IEC62351-3 secure for IEC104/DNP3 is used, then update to version 9.4.2 or latest
If IEC62351-3 secure for IEC104/DNP3 is used, then update to version 9.4.2 or latest
Patch: Update to V3.0.0 or later version
Update to V3.0.0 or later version
Patch: AFS650: Update to AFS 650 firmware version 9.1.10
AFS650: Update to AFS 650 firmware version 9.1.10
Mitigation: In addition, recommended security practices and firewall configurations can help protect a process c
In addition, recommended security practices and firewall configurations can help protect a process control network from attacks that originate from outside the network. Such practices include that process control systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system that has a minimal number of ports exposed, and others that have to be evaluated case by case. Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: For more information, see Hitachi Energy's Cybersecurity Advisory.
For more information, see Hitachi Energy's Cybersecurity Advisory.
Mitigation: Hitachi Energy has released the following mitigations/fixes:
Hitachi Energy has released the following mitigations/fixes:
Patch: AFS660-C, AFS665-B, AFS670-V2: Update to AFS 66x firmware version 7.1.08
AFS660-C, AFS665-B, AFS670-V2: Update to AFS 66x firmware version 7.1.08
Patch: AFS670/675/677, AFR677: Update to AFS/AFR 67x firmware version 9.1.10
AFS670/675/677, AFR677: Update to AFS/AFR 67x firmware version 9.1.10
Mitigation: Recommended security practices and firewall configurations could help protect a process control netw
Recommended security practices and firewall configurations could help protect a process control network from attacks originating from outside the network.
Mitigation: For more information, see Hitachi Energy's Security Advisory: 8DBD000167.
For more information, see Hitachi Energy's Security Advisory: 8DBD000167.
Mitigation: Scan portable computers and removable storage media for malware prior connection to a control system
Scan portable computers and removable storage media for malware prior connection to a control system.
Mitigation: Ensure process control systems have no direct connections to the internet and are separated from oth
Ensure process control systems have no direct connections to the internet and are separated from other networks via a firewall system with minimal exposed ports.
Mitigation: Hitachi Energy recommends the following actions:
Hitachi Energy recommends the following actions:
Mitigation: Hitachi Energy recommends the following general mitigations:
Hitachi Energy recommends the following general mitigations:
Mitigation: Disable the SNMP server (CLI and web interface will continue to function as they use an internal con
Disable the SNMP server (CLI and web interface will continue to function as they use an internal connection).
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: Restrict TCP/IP-based management protocols to trusted IP addresses.
Restrict TCP/IP-based management protocols to trusted IP addresses.
Mitigation: Configure the NTP service with redundant trustworthy sources of time.
Configure the NTP service with redundant trustworthy sources of time.
Mitigation: Configure only trusted DNS server(s).
Configure only trusted DNS server(s).
Patch: Update to upcoming AFF660/665 FW 04.6.01 release when available.
Update to upcoming AFF660/665 FW 04.6.01 release when available.
Mitigation: Do not use process control systems for internet surfing, instant messaging, or receiving emails.
Do not use process control systems for internet surfing, instant messaging, or receiving emails.
Mitigation: Schneider Electric has released patch, C3414-500-S02YZ - Secure Firmware Version J2 that mitigates t
Schneider Electric has released patch, C3414-500-S02YZ - Secure Firmware Version J2 that mitigates the vulnerability in CPU card, C3414 LX-800, which is used in multiple Schneider Electric RTUs. Customers may obtain this patch by contacting Schneider Electric’s customer service department at: 1-713-920-6832
Mitigation: A new version of VxWorks, Version 6.9 has been released
A new version of VxWorks, Version 6.9 has been released
Mitigation: the patch for VxWorks, Version 6.7.1 is available at the following URL with a valid account: (https:
the patch for VxWorks, Version 6.7.1 is available at the following URL with a valid account: (https://knowledge.windriver.com/en-us/000_Products/000/020/030/050/020/000_VxWorks_6.7.1_Cumulative_Networking_Patch_20150404)
Mitigation: A patch for VxWorks, Version 7 released prior to February 13, 2015, has been released, which can be
A patch for VxWorks, Version 7 released prior to February 13, 2015, has been released, which can be downloaded with Wind River’s Workbench maintenance tool. The RPM package is ipnet_coreip 1.2.2.0
Mitigation: The vulnerability is resolved in VxWorks, Version 5.5.2 and later versions. Wind River recommends th
The vulnerability is resolved in VxWorks, Version 5.5.2 and later versions. Wind River recommends that asset owners using versions of VxWorks, Version 5.5 prior to Version 5.5.1, update to 5.5.2 or contact Wind River
Mitigation: Additional information about weaknesses in TCP initial sequence number generation is available in CE
Additional information about weaknesses in TCP initial sequence number generation is available in CERT/CC’s Vulnerability Note, VU#498440 Multiple TCP/IP Implementations May Use Statistically Predictable Initial Sequence Numbers, which is available at: (https://www.kb.cert.org/vuls/id/498440)
Mitigation: A patch for Wind River VxWorks 653, Version 3.0 has been released and is available in VxWorks 653, V
A patch for Wind River VxWorks 653, Version 3.0 has been released and is available in VxWorks 653, Version 3.0.1 and later versions. VxWorks 653, Version 3.0.1 can be downloaded with Wind River’s Workbench maintenance tool. The RPM package is 6.6.7.1-vxworks653_20151020 and later versions
Mitigation: A patch for VxWorks Cert, Version 6.6.4.1 (IPNet Cumulative Patch 2015102209) has been released, whi
A patch for VxWorks Cert, Version 6.6.4.1 (IPNet Cumulative Patch 2015102209) has been released, which is available at the following URL with a valid account: (https://knowledge.windriver.com/en-us/000_Products/000/040/000/050/000_Cert_6.6.4.1_IPNET_CP_1_patch)
Mitigation: Use strong passwords
Use strong passwords
Mitigation: A patch for Wind River VxWorks Cert, Version 6.6.4.1 (DO-178B Network Stack Patch) is available on r
A patch for Wind River VxWorks Cert, Version 6.6.4.1 (DO-178B Network Stack Patch) is available on request
Mitigation: The vulnerability is resolved in VxWorks, Version 6.7.1.1 and later versions. Wind River recommends
The vulnerability is resolved in VxWorks, Version 6.7.1.1 and later versions. Wind River recommends that asset owners using versions of VxWorks, Version 6.7 prior to Version 6.7.1, update to Version 6.7.1.1 or contact Wind River
Mitigation: the patch for VxWorks, Version 6.8.3 is available at the following URL with a valid account: (https:
the patch for VxWorks, Version 6.8.3 is available at the following URL with a valid account: (https://knowledge.windriver.com/en-us/000_Products/000/020/020/050/030/000_VxWorks_6.8.3_Cumulative_Networking_Source_Patch_20150211_for_GPP_and_MSP)
Mitigation: VxWorks, Version 6.9.4.4 can be downloaded with Wind River’s Workbench maintenance tool. Wind River
VxWorks, Version 6.9.4.4 can be downloaded with Wind River’s Workbench maintenance tool. Wind River recommends that asset owners using versions of VxWorks, Version 6.9 prior to Version 6.9.4.4, update to Version 6.9.4.4 or contact Wind River
Mitigation: A patch for VxWorks, Version 6.8 has been released
A patch for VxWorks, Version 6.8 has been released
Mitigation: Schneider Electric recommends the following interim mitigations until patches can be applied: Enable
Schneider Electric recommends the following interim mitigations until patches can be applied: Enable SAGE RTU security features, so that network traffic is encrypted and authenticated
Mitigation: For all other SAGE RTU models, contact Schneider Electric’s customer service department at: 1-713-92
For all other SAGE RTU models, contact Schneider Electric’s customer service department at: 1-713-920-6832
Mitigation: A patch for VxWorks, Version 5.5 has been released, which is available at the following URL, with a
A patch for VxWorks, Version 5.5 has been released, which is available at the following URL, with a valid account: (https://knowledge.windriver.com/en-us/000_Products/000/020/0B0/000/090/000_VxWorks_5.5.1_Source_Point_Patch_for_Defect_VXW5-11090)
Mitigation: A patch for VxWorks, Version 6.7 has been released
A patch for VxWorks, Version 6.7 has been released
Mitigation: The vulnerability is resolved in VxWorks, Version 6.8.3.1 and later versions. Wind River recommends
The vulnerability is resolved in VxWorks, Version 6.8.3.1 and later versions. Wind River recommends that asset owners using versions of VxWorks, Version 6.8 prior to Version 6.8.3, update to Version 6.8.3.1 or contact Wind River
Mitigation: Wind River has released patches and new versions to address the TCP predictability vulnerability for
Wind River has released patches and new versions to address the TCP predictability vulnerability for several versions of VxWorks
Mitigation: however, they will work with customers to discuss options. Wind River’s security advisory is availab
however, they will work with customers to discuss options. Wind River’s security advisory is available at the following URL with a valid account: (https://knowledge.windriver.com/@api/deki/files/234042/StandardSupportMaintenanceTerms-PremAdd-010615-FINAL.pdf)
Mitigation: Schneider Electric has released Security Notification, SEVD-2015-162-01, which is available at the f
Schneider Electric has released Security Notification, SEVD-2015-162-01, which is available at the following URL: (http://www.schneider-electric.com/ww/en/download/document/SEVD-2015-162-01)
Mitigation: A patch for Wind River VxWorks 653, Version 2.5 has been released and is available in VxWorks 653, V
A patch for Wind River VxWorks 653, Version 2.5 has been released and is available in VxWorks 653, Version 2.5.0.1 and later versions. VxWorks 653, Version 2.5.0.1 can be downloaded with Wind River’s Workbench maintenance tool
Mitigation: Wind River has stated that they will not provide patches or support for versions of VxWorks that are
Wind River has stated that they will not provide patches or support for versions of VxWorks that are at end-of-life
Mitigation: and Implement extensive logging of network traffic.
and Implement extensive logging of network traffic.
Mitigation: For more information about Wind River’s patches or new versions of VxWorks, contact Wind River’s cus
For more information about Wind River’s patches or new versions of VxWorks, contact Wind River’s customer support at: (http://windriver.com/support/)
Patch: Update to version 6.3.02
Update to version 6.3.02
Patch: Update to version 6.2.04.014 or update to version 6.3.02
Update to version 6.2.04.014 or update to version 6.3.02
Mitigation: Apply general mitigation factors
Apply general mitigation factors
Patch: Update to V4.5 or later version
Update to V4.5 or later version
Mitigation: Apply General Mitigation Factors/Workarounds
Apply General Mitigation Factors/Workarounds
Mitigation: Apply General Mitigation Factors/Workarounds
Apply General Mitigation Factors/Workarounds
Patch: Update to version 2.2.5.6
Update to version 2.2.5.6
Patch: Update to version 2.2.3.7
Update to version 2.2.3.7
Patch: Update to version 2.2.4.4
Update to version 2.2.4.4
Patch: Update to version 2.1.0.6
Update to version 2.1.0.6
Patch: Update to version 2.2.1.9
Update to version 2.2.1.9
Patch: Update to version 2.2.2.6
Update to version 2.2.2.6
Mitigation: Apply General Mitigation Factors
Apply General Mitigation Factors
Patch: Update to version 2.0.0.14
Update to version 2.0.0.14
Mitigation: XMC20: Upgrade to Version R15A
XMC20: Upgrade to Version R15A
Mitigation: Please refer to the Hitachi Energy XMC20 advisory for more details on affected module information.
Please refer to the Hitachi Energy XMC20 advisory for more details on affected module information.
Patch: FOX61x: Upgrade to Version R15A
FOX61x: Upgrade to Version R15A
Mitigation: Do not directly connect to the Internet.
Do not directly connect to the Internet.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Patch: Please refer to the Hitachi Energy FOX61x advisory for more details on affected module information.
Please refer to the Hitachi Energy FOX61x advisory for more details on affected module information.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Separate from other networks by means of a firewall system that has a minimal number of ports expose
Separate from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: For additional information and access to updated firmware, please contact the Hitachi Energy service
For additional information and access to updated firmware, please contact the Hitachi Energy service organization.
Mitigation: Avoid embedded FOXCST with RADIUS authentication.
Avoid embedded FOXCST with RADIUS authentication.
Mitigation: Additional hardening guidelines for protecting the host operating system are published by “The Cente
Additional hardening guidelines for protecting the host operating system are published by “The Center for Internet Security (CIS).”
Mitigation: Additional hardening guidelines for protecting the host operating system are published by “The Cente
Additional hardening guidelines for protecting the host operating system are published by “The Center for Internet Security (CIS).”
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.
Mitigation: Do not directly connect control systems networks to the internet.
Do not directly connect control systems networks to the internet.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses connecting to
Portable computers and removable storage media should be carefully scanned for viruses connecting to a control system.
Mitigation: Securely handle exported files.
Securely handle exported files.
Mitigation: Separate process control systems from other networks using a firewall system with a minimal number o
Separate process control systems from other networks using a firewall system with a minimal number of open ports.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Patch: Hitachi Energy remediated these vulnerabilities in UNEM R16A and recommends users upgrade to this ve
Hitachi Energy remediated these vulnerabilities in UNEM R16A and recommends users upgrade to this version.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000084.
For more information, see Hitachi Energy advisory 8DBD000084.
Mitigation: Ensure that only authorized personnel have access to the system configuration files.
Ensure that only authorized personnel have access to the system configuration files.
Mitigation: Secure the NMS CLIENT/SERVER communication.
Secure the NMS CLIENT/SERVER communication.
Patch: Hitachi Energy has remediated these vulnerabilities in FOXMAN-UN R16A and recommends users upgrade t
Hitachi Energy has remediated these vulnerabilities in FOXMAN-UN R16A and recommends users upgrade to this version.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000083.
For more information, see Hitachi Energy advisory 8DBD000083.
Mitigation: Additional hardening guidelines for protecting the host operating system are published by “The Cente
Additional hardening guidelines for protecting the host operating system are published by “The Center for Internet Security (CIS).”
Mitigation: Ensure that only authorized personnel have access to the system configuration files.
Ensure that only authorized personnel have access to the system configuration files.
Mitigation: Secure the NMS CLIENT/SERVER communication.
Secure the NMS CLIENT/SERVER communication.
Mitigation: Avoid embedded FOXCST with RADIUS authentication.
Avoid embedded FOXCST with RADIUS authentication.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses connecting to
Portable computers and removable storage media should be carefully scanned for viruses connecting to a control system.
Mitigation: Securely handle exported files.
Securely handle exported files.
Mitigation: Additional hardening guidelines for protecting the host operating system are published by “The Cente
Additional hardening guidelines for protecting the host operating system are published by “The Center for Internet Security (CIS).”
Mitigation: Do not directly connect control systems networks to the internet.
Do not directly connect control systems networks to the internet.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.
Mitigation: Separate process control systems from other networks using a firewall system with a minimal number o
Separate process control systems from other networks using a firewall system with a minimal number of open ports.
Mitigation: Apply general mitigation factors
Apply general mitigation factors
Patch: Update to version 8.3.3.1
Update to version 8.3.3.1
Mitigation: Since the vulnerability exists in Jasper Report component that is external to Ellipse application, r
Since the vulnerability exists in Jasper Report component that is external to Ellipse application, restrict the loading of external custom reports created by end users by allowing only trusted Jasper reports generated by the system administrator.
Mitigation: Restrict the loading of external custom reports created by end users by allowing only trusted Jasper
Restrict the loading of external custom reports created by end users by allowing only trusted Jasper reports generated by the system administrator
Patch: Update to version 9.8
Update to version 9.8
Mitigation: Apply general mitigation factors
Apply general mitigation factors
Patch: Update to FOX61x R16B
Update to FOX61x R16B
Patch: Update to FOXCST_16.2.1
Update to FOXCST_16.2.1
Patch: Update to FOXMAN-UN R16B PC3 or later and apply general mitigation factors.
Update to FOXMAN-UN R16B PC3 or later and apply general mitigation factors.
Patch: Update to FOXMAN-UN R15B PC5 and apply general mitigation factors. (Update planned)
Update to FOXMAN-UN R15B PC5 and apply general mitigation factors. (Update planned)
Patch: Update to UNEM R16B PC3 or later and apply general mitigation factors.
Update to UNEM R16B PC3 or later and apply general mitigation factors.
Patch: Update to XMC20 R16B
Update to XMC20 R16B
Patch: Update to ECST_16.2.1
Update to ECST_16.2.1
Patch: Update to UNEM R15B PC5 and apply general mitigation factors. (Update planned)
Update to UNEM R15B PC5 and apply general mitigation factors. (Update planned)
Mitigation: Limit access to the interactive shell of the additional GNU/Linux subssytem to trusted personnel onl
Limit access to the interactive shell of the additional GNU/Linux subssytem to trusted personnel only.
Mitigation: Only build and run applications from trusted sources.
Only build and run applications from trusted sources.
Patch: Update to V3.1 or later version
Update to V3.1 or later version
Mitigation: Subnet Solutions inc. strongly recommends users update to the latest version. If this is not possibl
Subnet Solutions inc. strongly recommends users update to the latest version. If this is not possible, the following mitigations have been identified:
Mitigation: Subnet Solutions inc. reports that dependencies have been updated and vulnerabilities are to be addr
Subnet Solutions inc. reports that dependencies have been updated and vulnerabilities are to be addressed in PowerSYSTEM Center 2020 Update 23 release.
Mitigation: Ensure Data Execution Prevention (DEP) and Address Space Layout Randomization (ASLR) are enabled wit
Ensure Data Execution Prevention (DEP) and Address Space Layout Randomization (ASLR) are enabled within the operating system. Memory protection controls can be enabled via Windows Security. Please refer to this article for reference.
Mitigation: Apply application allow-listing to prevent unauthorized executables from running.
Apply application allow-listing to prevent unauthorized executables from running.
Mitigation: (CVE-2023-2953, CVE-2025-39203, CVE-2025-6021) RTU500 series CMU Firmware version 13.5.1 – 13.5.3: U
(CVE-2023-2953, CVE-2025-39203, CVE-2025-6021) RTU500 series CMU Firmware version 13.5.1 – 13.5.3: Update to CMU Firmware version 13.5.4
Mitigation: (CVE-2023-2953, CVE-2025-39203, CVE-2025-6021) RTU500 series CMU Firmware version 13.6.1: Update to
(CVE-2023-2953, CVE-2025-39203, CVE-2025-6021) RTU500 series CMU Firmware version 13.6.1: Update to CMU Firmware version 13.6.3
Mitigation: Hitachi Energy has identified the following specific workarounds and mitigations users can apply to
Hitachi Energy has identified the following specific workarounds and mitigations users can apply to reduce risk:
Mitigation: (CVE-2023-2953, CVE-2025-39203, CVE-2025-6021) RTU500 series CMU Firmware version 12.7.1 – 12.7.7: U
(CVE-2023-2953, CVE-2025-39203, CVE-2025-6021) RTU500 series CMU Firmware version 12.7.1 – 12.7.7: Update to CMU Firmware version 12.7.8 when available
Patch: Update to V2.4 or later version
Update to V2.4 or later version
Patch: Update to V2.4 or later version
Update to V2.4 or later version
Patch: Festo Didactic has released Factory Control Panel as a replacement for XAMPP on its MES PCs. Contact
Festo Didactic has released Factory Control Panel as a replacement for XAMPP on its MES PCs. Contact technical support at [email protected] to obtain the current version of Factory Control Panel which includes fixes for these vulnerabilities.
Mitigation: Delta Electronics states that this issue was fixed by version 1.0.11 released in December 2023. Del
Delta Electronics states that this issue was fixed by version 1.0.11 released in December 2023. Delta recommends updating to version 1.0.11 or later.
Patch: Update to V2501 or later version and install the latest available version of Tableau Server as descr
Update to V2501 or later version and install the latest available version of Tableau Server as described in https://support.sw.siemens.com/knowledge-base/PL8822108
Mitigation: As a general security measure, Siemens strongly recommends to protect network access to devices with
As a general security measure, Siemens strongly recommends to protect network access to devices with appropriate mechanisms. In order to operate the devices in a protected IT environment, Siemens recommends to configure the environment according to Siemens' operational guidelines for Industrial Security (Download: https://www.siemens.com/cert/operational-guidelines-industrial-security), and to follow the recommendations in the product manuals. Additional information on Industrial Security by Siemens can be found at: https://www.siemens.com/industrialsecurity
Patch: Update to V3.2.8 or later version
Update to V3.2.8 or later version
Patch: Update to V2.20 or later version
Update to V2.20 or later version
Mitigation: As a mitigation for vulnerable versions: Ensure that only trusted (CA) certificates are contained in
As a mitigation for vulnerable versions: Ensure that only trusted (CA) certificates are contained in the Machine Agent's truststore
Mitigation: Siemens products that contain a vulnerable TLS client: in cases where this option is configurable: e
Siemens products that contain a vulnerable TLS client: in cases where this option is configurable: ensure that TLS server certificate verification is turned on and do not configure trust for CA certificates, that contain a nameConstraint-extension (https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Mitigation: Siemens products that contain a vulnerable TLS server and have certificate-based client authenticati
Siemens products that contain a vulnerable TLS server and have certificate-based client authentication enabled: do not configure trust for CA certificates, that contain a nameConstraint-extension (https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Patch: Update to V2023.1 or later version
Update to V2023.1 or later version
Patch: Update to V5.3.0 or later version
Update to V5.3.0 or later version
Mitigation: As a mitigation for vulnerable versions: In the truststore, do not add CA certificates that contain
As a mitigation for vulnerable versions: In the truststore, do not add CA certificates that contain a nameConstraint-extension (https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Patch: Update to V2.13.0.3 or later version
Update to V2.13.0.3 or later version
Patch: Update to V2023.1 or later version
Update to V2023.1 or later version
Mitigation: Siemens products that contain a vulnerable TLS client: in cases where this option is configurable: e
Siemens products that contain a vulnerable TLS client: in cases where this option is configurable: ensure that TLS server certificate verification is turned on and do not configure trust for CA certificates, that contain a nameConstraint-extension (https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Mitigation: As a mitigation for vulnerable versions: In the truststore, do not add CA certificates that contain
As a mitigation for vulnerable versions: In the truststore, do not add CA certificates that contain a nameConstraint-extension ( https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Patch: Update to V2.20 or later version
Update to V2.20 or later version
Mitigation: Version 10.97.2 Critical Fixes Rollup 2 and later is not vulnerable to these exploits. ICONICS recom
Version 10.97.2 Critical Fixes Rollup 2 and later is not vulnerable to these exploits. ICONICS recommends that users of its products take the following mitigation steps:
Mitigation: Do not use the BACnet/SC feature on a production system.
Do not use the BACnet/SC feature on a production system.
Mitigation: Advisory 2023-009
Advisory 2023-009
Mitigation: ICONICS and Mitsubishi Electric are releasing security updates as critical fixes/rollups release. Fo
ICONICS and Mitsubishi Electric are releasing security updates as critical fixes/rollups release. For more information, refer to the ICONICS whitepaper on security vulnerabilities, the most recent version of which can be found here.
Mitigation: Additional information about the security updates may also be found in Mitsubishi Electric's securit
Additional information about the security updates may also be found in Mitsubishi Electric's security advisories:
Mitigation: Ensure the 10.97.2 Critical Fixes Rollup release is applied to version 10.97.2 systems.
Ensure the 10.97.2 Critical Fixes Rollup release is applied to version 10.97.2 systems.
Mitigation: ICONICS and Mitsubishi Electric recommend updating the ICONICS Suite with the latest security patche
ICONICS and Mitsubishi Electric recommend updating the ICONICS Suite with the latest security patches as they become available. ICONICS Suite security patches may be found here (login required).
Mitigation: For systems that do not contain the patch/fix:
For systems that do not contain the patch/fix:
Mitigation: Advisory 2022-014
Advisory 2022-014
Patch: PCU400: Version 9.3.8 or 9.4 or later
PCU400: Version 9.3.8 or 9.4 or later
Mitigation: Hitachi Energy encourages users to apply recommended security practices and firewall configurations.
Hitachi Energy encourages users to apply recommended security practices and firewall configurations. These practices include, but are not limited to:
Mitigation: For more information, see Hitachi Energy advisory 8DBD000137.
For more information, see Hitachi Energy advisory 8DBD000137.
Mitigation: Apply security updates to installed software components.
Apply security updates to installed software components.
Mitigation: Users should contact a Hitachi Energy representative for instructions on acquiring and installing th
Users should contact a Hitachi Energy representative for instructions on acquiring and installing the new versions.
Mitigation: Do not use process control systems for personal use, such as web browsing or checking emails.
Do not use process control systems for personal use, such as web browsing or checking emails.
Mitigation: Hitachi Energy has fixed the vulnerabilities in the following versions, and recommends users update
Hitachi Energy has fixed the vulnerabilities in the following versions, and recommends users update their systems to the appropriate version:
Mitigation: Do not allow process control systems to have direct connections to the Internet.
Do not allow process control systems to have direct connections to the Internet.
Mitigation: Protect process control systems from physical access by unauthorized personnel.
Protect process control systems from physical access by unauthorized personnel.
Mitigation: Carefully scan portable computers and removable storage media for viruses before they are connected
Carefully scan portable computers and removable storage media for viruses before they are connected to a control system.
Mitigation: Separate process control systems from other networks by means of a firewall system that has a minima
Separate process control systems from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: PCULogger: Version 1.1.0 or later
PCULogger: Version 1.1.0 or later
Mitigation: Do not use process control systems for personal use such as web browsing or checking emails.
Do not use process control systems for personal use such as web browsing or checking emails.
Mitigation: Have security updates applied to installed software components.
Have security updates applied to installed software components.
Mitigation: Carefully scan portable computers and removable storage media for viruses before connection to a con
Carefully scan portable computers and removable storage media for viruses before connection to a control system.
Mitigation: For all listed vulnerabilities: Lumada APM Version 6.5.0.1 or later.
For all listed vulnerabilities: Lumada APM Version 6.5.0.1 or later.
Mitigation: Users should contact Hitachi Energy for instructions on acquiring and installing the new versions.
Users should contact Hitachi Energy for instructions on acquiring and installing the new versions.
Mitigation: Protect process control systems from physical access by unauthorized personnel.
Protect process control systems from physical access by unauthorized personnel.
Mitigation: Do not allow process control systems to have direct connections to the Internet.
Do not allow process control systems to have direct connections to the Internet.
Mitigation: For CVE-2022-37434 only: Lumada APM Version 6.4.0.1 or later.
For CVE-2022-37434 only: Lumada APM Version 6.4.0.1 or later.
Mitigation: Hitachi Energy encourages users to apply recommended security practices and firewall configurations.
Hitachi Energy encourages users to apply recommended security practices and firewall configurations.
Mitigation: Note: Hitachi Energy has already remediated these vulnerabilities for cloud-based deployments (softw
Note: Hitachi Energy has already remediated these vulnerabilities for cloud-based deployments (software-as-a-service) of Lumada APM.
Mitigation: Separate process control systems from other networks via a firewall system with a minimal number of
Separate process control systems from other networks via a firewall system with a minimal number of exposed ports.
Patch: Update to V5.3.0 or later version
Update to V5.3.0 or later version
Patch: Update to V2023.1 or later version
Update to V2023.1 or later version
Mitigation: As a mitigation for vulnerable versions: In the truststore, do not add CA certificates that contain
As a mitigation for vulnerable versions: In the truststore, do not add CA certificates that contain a nameConstraint-extension ( https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Mitigation: As a mitigation for vulnerable versions: Ensure that only trusted (CA) certificates are contained in
As a mitigation for vulnerable versions: Ensure that only trusted (CA) certificates are contained in the Machine Agent's truststore
Mitigation: Siemens products that contain a vulnerable TLS server and have certificate-based client authenticati
Siemens products that contain a vulnerable TLS server and have certificate-based client authentication enabled: do not configure trust for CA certificates, that contain a nameConstraint-extension (https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Mitigation: Siemens products that contain a vulnerable TLS client: in cases where this option is configurable: e
Siemens products that contain a vulnerable TLS client: in cases where this option is configurable: ensure that TLS server certificate verification is turned on and do not configure trust for CA certificates, that contain a nameConstraint-extension (https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Patch: Update to V2.13.0.3 or later version
Update to V2.13.0.3 or later version
Patch: Update to V2.20 or later version
Update to V2.20 or later version
Mitigation: Siemens products that contain a vulnerable TLS server and have certificate-based client authenticati
Siemens products that contain a vulnerable TLS server and have certificate-based client authentication enabled: do not configure trust for CA certificates, that contain a nameConstraint-extension (https://www.rfc-editor.org/rfc/rfc5280#section-4.2.1.10) with punycode-encoded internationalized domain names
Mitigation: Ensure that only trusted (CA) certificates are contained in the Machine Agent's truststore
Ensure that only trusted (CA) certificates are contained in the Machine Agent's truststore
Patch: Update BIOS to V1.0.212N or later version
Update BIOS to V1.0.212N or later version
Patch: Update to version 1.3.4 (Build Number 1.3.4.574).
Update to version 1.3.4 (Build Number 1.3.4.574).
Mitigation: Follow security practices as defined in SDM600 security deployment guideline and firewall configurat
Follow security practices as defined in SDM600 security deployment guideline and firewall configurations to help protect process control networks from attacks that originate from outside the network. Such practices include that process control systems are: Physically protected from direct access by unauthorized personnel. Not directly connected to the Internet. Separated from other networks by means of a firewall system that has a minimal number of ports exposed. Not used for Internet surfing instant messaging or receiving e-mails.
Mitigation: Implement and continuously revise least privileges principles to minimize permissions and accesses t
Implement and continuously revise least privileges principles to minimize permissions and accesses to SDM600 related resources.
Mitigation: The vulnerabilities are remediated as of the following product Version SDM600 Version 1.2 FP2 HF10 (
The vulnerabilities are remediated as of the following product Version SDM600 Version 1.2 FP2 HF10 (Build Nr. 1.2.14002.506). Hitachi Energy recommends users apply the update at the earliest convenience from the SDM600 product website.
Mitigation: For additional information, see the Hitachi Energy security advisory.
For additional information, see the Hitachi Energy security advisory.
Mitigation: Carefully scan portable computers and removable storage media for viruses before connecting to a con
Carefully scan portable computers and removable storage media for viruses before connecting to a control system.
Patch: CIS Microsoft Windows Desktop Benchmarks (cisecurity.org)
CIS Microsoft Windows Desktop Benchmarks (cisecurity.org)
Patch: CIS Microsoft Windows Server Benchmarks (cisecurity.org)
CIS Microsoft Windows Server Benchmarks (cisecurity.org)
Patch: Physically protecting systems from direct access by unauthorized personnel.
Physically protecting systems from direct access by unauthorized personnel.
Patch: MSM is not intrinsically designed nor intended to be directly connected to the internet. Users shoul
MSM is not intrinsically designed nor intended to be directly connected to the internet. Users should disconnect the device from any internet-facing network.
Patch: Also, Hitachi Energy recommends following the hardening guidelines published by “The Center for Inte
Also, Hitachi Energy recommends following the hardening guidelines published by “The Center for Internet Security (CIS)” to protect the host operating system of machines connecting with MSM. These guidelines help prevent the lateral movement of the attack vector into MSM via these connected devices. Some examples for Windows based computers include:
Patch: Ensuring monitoring systems have no direct connections to the internet.
Ensuring monitoring systems have no direct connections to the internet.
Patch: For more information, see Hitachi Energy advisory 8DBD000154.
For more information, see Hitachi Energy advisory 8DBD000154.
Patch: Hitachi advises that monitoring systems should not be used for internet surfing, instant messaging,
Hitachi advises that monitoring systems should not be used for internet surfing, instant messaging, or receiving emails. Portable computers and removable storage media should be carefully scanned for malware prior to connection to monitoring systems.
Patch: Hitachi Energy suggests adopting user access management and antivirus protection software equipped w
Hitachi Energy suggests adopting user access management and antivirus protection software equipped with the latest signature rules on hosts with the Manufacturing Message Specification (MMS) Client application installed. Users can implement the operating system user access management functionality, if supported, to limit the probability of unauthorized access followed by rogue commands at the operating system level via MMS client application.
Patch: According to Hitachi Energy, users should follow recommended security practices and firewall configu
According to Hitachi Energy, users should follow recommended security practices and firewall configurations to help protect a network from outside attacks, including:
Patch: Separating monitoring system networks from other networks using a firewall system with a minimal num
Separating monitoring system networks from other networks using a firewall system with a minimal number of ports exposed.
Mitigation: Restrict access to the affected systems, especially to ports 22/tcp and 443/tcp to trusted IP addres
Restrict access to the affected systems, especially to ports 22/tcp and 443/tcp to trusted IP addresses only
Mitigation: Deactivate the webserver if not required, and if deactivation is supported by the product
Deactivate the webserver if not required, and if deactivation is supported by the product
Patch: Update to V3.2.7 or later version
Update to V3.2.7 or later version
Mitigation: Deactivate the webserver if not required, and if deactivation is supported by the product
Deactivate the webserver if not required, and if deactivation is supported by the product
Mitigation: Restrict access to the affected systems, especially to ports 22/tcp and 443/tcp to trusted IP addres
Restrict access to the affected systems, especially to ports 22/tcp and 443/tcp to trusted IP addresses only
Patch: Update to V3.2.7 or later version
Update to V3.2.7 or later version
Patch: Hitachi Energy recommends users update to CMU Firmware versions 13.3.3 or 13.4.1.
Hitachi Energy recommends users update to CMU Firmware versions 13.3.3 or 13.4.1.
Mitigation: Enforce proper password policies and processes.
Enforce proper password policies and processes.
Mitigation: Ensure process control systems have no direct connections to the internet and are separated from oth
Ensure process control systems have no direct connections to the internet and are separated from other networks via a firewall system with minimal exposed ports.
Mitigation: Recommended security practices and firewall configurations can help protect a process control networ
Recommended security practices and firewall configurations can help protect a process control network from attacks originating from outside the network.
Mitigation: Do not use process control systems for internet surfing, instant messaging, or receiving emails.
Do not use process control systems for internet surfing, instant messaging, or receiving emails.
Mitigation: Hitachi Energy recommends the following general mitigations:
Hitachi Energy recommends the following general mitigations:
Mitigation: The reported vulnerabilities affect only the RTU500 series with HCI IEC 60870-5-104 and IEC62351-5 o
The reported vulnerabilities affect only the RTU500 series with HCI IEC 60870-5-104 and IEC62351-5 or IEC 62351-5 configured and enabled. A possible mitigation is to disable the HCI IEC 60870-5-104 function or its IEC 62351-3 and IEC 62351-5 features if they are not used. By default, the HCI IEC 60870-5-104 and its IEC 62351-3 or IEC 62351-5 support are disabled.
Mitigation: For more information, see Hitachi Energy's Security Advisory: 8DBD000121.
For more information, see Hitachi Energy's Security Advisory: 8DBD000121.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: Scan portable computers and removable storage media for malware prior connection to a control system
Scan portable computers and removable storage media for malware prior connection to a control system.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000107.
For more information, see Hitachi Energy advisory 8DBD000107.
Patch: Update SIMATIC STEP 7 V17 to V17 Update 5 or later version
Update SIMATIC STEP 7 V17 to V17 Update 5 or later version
Patch: TIA Portal Cloud V2.3 or later version updated TIA Portal to V17 Update 5 or later version
TIA Portal Cloud V2.3 or later version updated TIA Portal to V17 Update 5 or later version
Mitigation: Restrict access to the OPC UA interface to trusted systems
Restrict access to the OPC UA interface to trusted systems
Mitigation: For more information see Mitsubishi Electric's advisory 2022-003
For more information see Mitsubishi Electric's advisory 2022-003
Mitigation: Install an antivirus software in the personal computer that runs this product.
Install an antivirus software in the personal computer that runs this product.
Mitigation: Minimize user privilege for product users.
Minimize user privilege for product users.
Mitigation: Restrict network access to the computer running this product so it can be accessed only from trusted
Restrict network access to the computer running this product so it can be accessed only from trusted networks or hosts.
Mitigation: Please follow the safety precautions in the operating manual for the product.
Please follow the safety precautions in the operating manual for the product.
Mitigation: Update to 1.29F or later. Unzip the downloaded file (zip format) and execute the file “setup.exe.”
Update to 1.29F or later. Unzip the downloaded file (zip format) and execute the file “setup.exe.”
Patch: Use the Edge Management System to update to V1.7 or later version
Use the Edge Management System to update to V1.7 or later version
Patch: Update to V4.0.1 or later version
Update to V4.0.1 or later version
Patch: Update to V5.5.2 or later version
Update to V5.5.2 or later version
Patch: Update to V5.7 HF4 or later version
Update to V5.7 HF4 or later version
Patch: Update to V18 or later version
Update to V18 or later version
Patch: Update to V2.2.28 or later version
Update to V2.2.28 or later version
Patch: Update to V2.0 or later version
Update to V2.0 or later version
Patch: Update to V3.0.1 or later version
Update to V3.0.1 or later version
Patch: Update to V3.0.37 or later version
Update to V3.0.37 or later version
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Patch: Update to V3.4.29 or later version
Update to V3.4.29 or later version
Patch: Update to V17 Update 5 or later version
Update to V17 Update 5 or later version
Patch: Update to V1.6 Upd6 or later version
Update to V1.6 Upd6 or later version
Patch: Update to V2.9.7 or later version
Update to V2.9.7 or later version
Patch: Update to V17 SP1 Update 1 or later version
Update to V17 SP1 Update 1 or later version
Patch: Update to V3.1.1 or later version
Update to V3.1.1 or later version
Patch: Update to V4.6.0 or later version
Update to V4.6.0 or later version
Patch: Update to V21.9.7 or later version
Update to V21.9.7 or later version
Patch: Update to V1.0 SP3 or later version
Update to V1.0 SP3 or later version
Patch: Update to V16 Update 6 or later version
Update to V16 Update 6 or later version
Mitigation: Disable web server within the device configuration if it is not used or limit access to the web serv
Disable web server within the device configuration if it is not used or limit access to the web server on a particular Ethernet/PROFINET port/interface if possible (setting is under General / Web server access).
Patch: Update to V2.3.1 or later version
Update to V2.3.1 or later version
Patch: Update to V5.0 or later version
Update to V5.0 or later version
Patch: Update to V1.9 or later version
Update to V1.9 or later version
Patch: Update to V1.0 SP2 or later version
Update to V1.0 SP2 or later version
Patch: Update to V4.4 or later version
Update to V4.4 or later version
Patch: Update to V7.2 or later version
Update to V7.2 or later version
Patch: Update to V4.0 or later version
Update to V4.0 or later version
Patch: Update to V2.0 or later version
Update to V2.0 or later version
Patch: Update to V9.1 SP2 UC04 or later version
Update to V9.1 SP2 UC04 or later version
Patch: Update to V7.4 SP1 Update 22 or later version
Update to V7.4 SP1 Update 22 or later version
Patch: Update to V5.5.1 or later version
Update to V5.5.1 or later version
Patch: Update to V2.4.8 or later version
Update to V2.4.8 or later version
Mitigation: For the unfixed component in this version (OpenPCS 7): Restrict access to the OPC UA interface of Op
For the unfixed component in this version (OpenPCS 7): Restrict access to the OPC UA interface of OpenPCS 7 to trusted systems
Patch: Update to V2.0.1 or later version
Update to V2.0.1 or later version
Patch: Update to V2.9.7 or later version
Update to V2.9.7 or later version
Patch: Update to V2.0.1 or later version
Update to V2.0.1 or later version
Patch: Update to V21.9.7 or later version
Update to V21.9.7 or later version
Patch: Update to V3.3 or later version
Update to V3.3 or later version
Patch: Update to V6.5 or later version
Update to V6.5 or later version
Patch: Update to V3.1 or later version
Update to V3.1 or later version
Patch: Update to V1.0.8 or later version
Update to V1.0.8 or later version
Patch: Update to V2.15.1 or later version
Update to V2.15.1 or later version
Patch: Update to V2020 SP1 Update 1 or later version In the context of SIMATIC PCS neo, update to SIMATIC P
Update to V2020 SP1 Update 1 or later version In the context of SIMATIC PCS neo, update to SIMATIC PCS neo V4.0 or later version (<https://support.industry.siemens.com/cs/ww/de/view/109814551/>); in the context of SIMATIC PCS 7, update to SIMATIC PCS 7 V9.1 SP2 or later version (<https://support.industry.siemens.com/cs/ww/en/view/109812240/>); in the context of SIMATIC WinCC, contact local support
Patch: Update ROX II to V2.15.1 or later version
Update ROX II to V2.15.1 or later version
Patch: Update to V4.1.7 or later version
Update to V4.1.7 or later version
Patch: Update to V1.1.80 or later version
Update to V1.1.80 or later version
Patch: Update to V3.3 or later version
Update to V3.3 or later version
Patch: Update to V17 Update 5 or later version
Update to V17 Update 5 or later version
Patch: Update to V8.7.1.11 or later version
Update to V8.7.1.11 or later version
Patch: Update to V3.3.11 or later version
Update to V3.3.11 or later version
Patch: Update to V7.5 SP2 Update 16 or later version
Update to V7.5 SP2 Update 16 or later version
Patch: Update to V9.1 Update 1 or later version
Update to V9.1 Update 1 or later version
Patch: Update to V9.2 SP2 or later version
Update to V9.2 SP2 or later version
Mitigation: When internet access is required, use a virtual private network (VPN) to prevent unauthorized access
When internet access is required, use a virtual private network (VPN) to prevent unauthorized access.
Mitigation: CC-Link IE TSN Industrial Managed Switch: Mitsubishi Electric recommends users to log into NZ2MHG-TS
CC-Link IE TSN Industrial Managed Switch: Mitsubishi Electric recommends users to log into NZ2MHG-TSNT8F2 or NZ2MHG-TSNT4 with the web interface and change the username and password from their default setting in [Account Management] on the function menu. They are also recommended to set proper access permissions for different users.
Mitigation: GOT2000 compatible HMI software: Mitsubishi Electric has released a patch for these issues and recom
GOT2000 compatible HMI software: Mitsubishi Electric has released a patch for these issues and recommends users update affected products to Version 1.280S or later. Users should contact Mitsubishi Electric to obtain the patch.
Mitigation: CC-Link IE TSN Industrial Managed Switch: Mitsubishi Electric has released fixed firmware for these
CC-Link IE TSN Industrial Managed Switch: Mitsubishi Electric has released fixed firmware for these issues and recommends users update affected products to Version 04 or later. Users should contact Mitsubishi Electric to obtain the fixed firmware version. To update affected CC-Link IE TSN Industrial Managed Switch products log into the product with the web interface and go to [System] → [System Management] → [Firmware Upgrade] from the Function menu after obtaining the updated firmware file.
Mitigation: Restrict physical access to computers running the affected software.
Restrict physical access to computers running the affected software.
Mitigation: For GOT2000 compatible HMI software: Install antivirus software on computers running the affected so
For GOT2000 compatible HMI software: Install antivirus software on computers running the affected software.
Mitigation: MELSEC iQ-R Series OPC UA Server Module: Mitsubishi Electric will release fixed software for this de
MELSEC iQ-R Series OPC UA Server Module: Mitsubishi Electric will release fixed software for this device in the near future. Mitsubishi Electric recommends users ensure the OPC UA Client is updated to the latest version and to use legitimate certificates on the OPC UA Client side.
Mitigation: To update affected CC-Link IE TSN Industrial Managed Switch products, log into the product with the
To update affected CC-Link IE TSN Industrial Managed Switch products, log into the product with the web interface and go to [System] → [System Management] → [Firmware Upgrade] from the Function menu after obtaining the updated firmware file.
Mitigation: For instructions on how to check the product version and more information regarding contacting Mitsu
For instructions on how to check the product version and more information regarding contacting Mitsubishi Electric, refer to Mitsubishi Electric's security advisory.
Mitigation: Use the products within a LAN and block access from untrusted networks and hosts.
Use the products within a LAN and block access from untrusted networks and hosts.
Mitigation: For GOT2000 compatible HMI software: Update the OPC UA server to the latest version available.
For GOT2000 compatible HMI software: Update the OPC UA server to the latest version available.
Mitigation: Separate process control systems from the internet and other networks using firewall system with min
Separate process control systems from the internet and other networks using firewall system with minimal open ports.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses connecting to
Portable computers and removable storage media should be carefully scanned for viruses connecting to a control system
Patch: Update to V4.0.400 or later version
Update to V4.0.400 or later version
Patch: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails
Patch: For more information, see Hitachi security advisory 8DBD000118.
For more information, see Hitachi security advisory 8DBD000118.
Patch: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system
Patch: Configure firewalls to protect process control networks from attacks originating from outside the ne
Configure firewalls to protect process control networks from attacks originating from outside the network
Patch: Enforce proper password policies and processes
Enforce proper password policies and processes
Patch: Hitachi Energy has created an update to address the reported vulnerabilities and recommends users up
Hitachi Energy has created an update to address the reported vulnerabilities and recommends users update to at least GWS version 3.3.0.0
Patch: Physically protect process control systems from direct access by unauthorized personnel
Physically protect process control systems from direct access by unauthorized personnel
Patch: Hitachi Energy recommends the following general mitigation factors and security practices:
Hitachi Energy recommends the following general mitigation factors and security practices:
Patch: Avoid directly connecting control systems to the internet
Avoid directly connecting control systems to the internet
Patch: Separate process control networks from other networks using a firewall system with a minimal number
Separate process control networks from other networks using a firewall system with a minimal number of ports exposed
Patch: For CVE-2020-25692, the vulnerability impacts GWS if the authentication service is installed. It is
For CVE-2020-25692, the vulnerability impacts GWS if the authentication service is installed. It is not installed by default but is required during the installation process of GWS or installed manually later. Authentication Service (previously ABB Authentication Service) is only needed when GWS users are authenticated using centralized SDM600 user account management.
Patch: For SYS600 9.4: upgrade to at least SYS600 version 10.4.
For SYS600 9.4: upgrade to at least SYS600 version 10.4.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or email.
Process control systems should not be used for internet surfing, instant messaging, or email.
Mitigation: Hitachi Energy recommends following 1MRK511518 MicroSCADA X Cyber Security Deployment Guidelines.
Hitachi Energy recommends following 1MRK511518 MicroSCADA X Cyber Security Deployment Guidelines.
Patch: For SYS600 10.x: update to at least SYS600 version 10.4.
For SYS600 10.x: update to at least SYS600 version 10.4.
Mitigation: For additional information and support, users should contact Hitachi Energy service organization.
For additional information and support, users should contact Hitachi Energy service organization.
Patch: Update to V5.0 or later version
Update to V5.0 or later version
Mitigation: (CVE-2025-6021) RTU500 series CMU Firmware version 13.6.1, RTU500 series CMU Firmware version 12.7.1
(CVE-2025-6021) RTU500 series CMU Firmware version 13.6.1, RTU500 series CMU Firmware version 12.7.1 – 12.7.7, RTU500 series CMU Firmware version 13.5.1 – 13.5.3, RTU500 series CMU Firmware version 13.7.1 – 13.7.6: Follow general mitigation factors/workarounds.
Mitigation: For more information see the associated Hitachi Energy PSIRT security advisory 8DBD000220 Multiple V
For more information see the associated Hitachi Energy PSIRT security advisory 8DBD000220 Multiple Vulnerabilities in Hitachi Energy's RTU500 series Product.
Mitigation: (CVE-2023-2953, CVE-2024-45490, CVE-2024-45491, CVE-2024-45492, CVE-2024-28757, CVE-2025-6021) RTU50
(CVE-2023-2953, CVE-2024-45490, CVE-2024-45491, CVE-2024-45492, CVE-2024-28757, CVE-2025-6021) RTU500 series CMU Firmware version 13.7.1 – 13.7.6: Update to CMU Firmware version 13.7.7
Mitigation: Block both incoming and outgoing connections between the system and the Internet
Block both incoming and outgoing connections between the system and the Internet
Patch: Update to V1.5 SP4 and apply the patch
Update to V1.5 SP4 and apply the patch
Patch: Update to V1.6 SP1 and apply the patch
Update to V1.6 SP1 and apply the patch
Patch: Update to V1.0.3 or later version
Update to V1.0.3 or later version
Patch: Update to V1.2.1 or later version. Please contact customer support to obtain the patch
Update to V1.2.1 or later version. Please contact customer support to obtain the patch
Patch: Apply the patch
Apply the patch
Patch: Update to V2.0.4 or later version
Update to V2.0.4 or later version
Mitigation: When the Prognostic Model Executor service is restored to function (after applying the suggested rem
When the Prognostic Model Executor service is restored to function (after applying the suggested remediation steps and according to the installation guide) it will start processing the accumulated requests. When the period of accumulation is long, this may result in a prolonged period of intensive calculations.
Mitigation: If any requests were lost, the affected assets may be missing historical or even current condition a
If any requests were lost, the affected assets may be missing historical or even current condition assessments. To ensure the current assessments are up to date, the customer should trigger recalculation of condition of all assets using the performance models.
Mitigation: Hitachi Energy also recommends following the least privilege principle by limiting and controlling a
Hitachi Energy also recommends following the least privilege principle by limiting and controlling access to the “Administrator” role or “Import” role privileges in the application programmable interface (API). For more information, users should see Hitachi Energy advisory 8DBD000105.
Mitigation: Lumada Asset Performance Manager (APM) versions 6.1.0.0 and 6.1.0.1: Apply patch version 6.1.0.2 or
Lumada Asset Performance Manager (APM) versions 6.1.0.0 and 6.1.0.1: Apply patch version 6.1.0.2 or upgrade to 6.2.0.3
Mitigation: Note: For Lumada Asset Performance Manager (APM) online service (SaaS) version 6.3.220323.0 and prio
Note: For Lumada Asset Performance Manager (APM) online service (SaaS) version 6.3.220323.0 and prior, Hitachi Energy has already updated all SaaS environments.
Mitigation: Disabling the Prognostic Model Executor service will cause the Lumada APM application to stop perfor
Disabling the Prognostic Model Executor service will cause the Lumada APM application to stop performing condition assessment calculations (for all assets configured to use prognostic models) and to accumulate calculation requests in the internal messaging queue. As the requests in the queue have a limited lifetime (set by messaging bus topic retention), when that lifetime expires, the request will be lost.
Mitigation: Lumada Asset Performance Manager (APM) versions 6.2.0.0 to 6.2.0.2: Apply patch version 6.2.0.4 or u
Lumada Asset Performance Manager (APM) versions 6.2.0.0 to 6.2.0.2: Apply patch version 6.2.0.4 or upgrade to 6.4.0.0
Mitigation: For additional information, support and to upgrade users should contact Hitachi Energy.
For additional information, support and to upgrade users should contact Hitachi Energy.
Mitigation: Lumada Asset Performance Manager (APM) versions 6.3.0.0 to 6.3.0.2: Apply patch version 6.3.0.3 or u
Lumada Asset Performance Manager (APM) versions 6.3.0.0 to 6.3.0.2: Apply patch version 6.3.0.3 or upgrade to 6.4.0.0
Mitigation: Lumada Asset Performance Manager (APM) versions 6.0.0.0 to 6.0.0.4: Apply patch version 6.0.0.5 or u
Lumada Asset Performance Manager (APM) versions 6.0.0.0 to 6.0.0.4: Apply patch version 6.0.0.5 or upgrade to 6.2.0.3
Mitigation: Hitachi Energy recommends disabling the Prognostic Model Executor service if users cannot upgrade to
Hitachi Energy recommends disabling the Prognostic Model Executor service if users cannot upgrade to the latest patch version.
Mitigation: Hitachi Energy recommends applying the most recent patch version of Lumada Asset Performance Managem
Hitachi Energy recommends applying the most recent patch version of Lumada Asset Performance Management (APM) or upgrading to a newer, unaffected major version:
Patch: Update to V1.0.1.1 or later version
Update to V1.0.1.1 or later version
Patch: Update to V1.0.1.1 or later version
Update to V1.0.1.1 or later version
Patch: GE strongly recommends users with impacted firmware versions update their UR devices to UR firmware
GE strongly recommends users with impacted firmware versions update their UR devices to UR firmware Version 8.10 or greater to resolve these vulnerabilities. GE provides additional mitigations and information about these vulnerabilities in GE Publication Number: GES-2021-004 at https://www.gegridsolutions.com/Passport/Login.aspx (login required).
Mitigation: GE recommends users refer to the UR Deployment guide for secure configuration of UR IED and system.
GE recommends users refer to the UR Deployment guide for secure configuration of UR IED and system.
Mitigation: GE recommends protecting UR IED by using network defense-in-depth practices. This includes, but is n
GE recommends protecting UR IED by using network defense-in-depth practices. This includes, but is not limited to, placing UR IED inside the control system network security perimeter, and having access controls, monitoring (such as an Intrusion Detection System), and other mitigating technologies in place.
Mitigation: EB-50GU-J: Update to Version 7.11 or later
EB-50GU-J: Update to Version 7.11 or later
Mitigation: EW-50E: Update to Version 7.98 or later
EW-50E: Update to Version 7.98 or later
Mitigation: GB-50AD: Replace the air conditioning systems to AE-200J, AE-50J or EW-50J Version 7.98 or later
GB-50AD: Replace the air conditioning systems to AE-200J, AE-50J or EW-50J Version 7.98 or later
Mitigation: AE-50E: Update to Version 7.98 or later
AE-50E: Update to Version 7.98 or later
Mitigation: Use an anti-virus software and update the OS and the web browser to the latest version on your compu
Use an anti-virus software and update the OS and the web browser to the latest version on your computer to connect your air conditioning system.
Mitigation: G-150AD: Replace the air conditioning systems to AE-200J, AE-50J or EW-50J Version 7.98 or later
G-150AD: Replace the air conditioning systems to AE-200J, AE-50J or EW-50J Version 7.98 or later
Mitigation: See Mitsubishi Electric's security bulletin for more information.
See Mitsubishi Electric's security bulletin for more information.
Mitigation: Restrict the access to air conditioning systems from untrusted networks and hosts.
Restrict the access to air conditioning systems from untrusted networks and hosts.
Mitigation: AE-200E: Update to Version 7.98 or later
AE-200E: Update to Version 7.98 or later
Mitigation: EW-50J: Update to Version 7.98 or later
EW-50J: Update to Version 7.98 or later
Mitigation: EW-50A: Update to Version 7.98 or later
EW-50A: Update to Version 7.98 or later
Mitigation: AE-200A: Update to Version 7.98 or later
AE-200A: Update to Version 7.98 or later
Mitigation: To minimize the risk of these vulnerabilities being exploited, please make sure air conditioning sys
To minimize the risk of these vulnerabilities being exploited, please make sure air conditioning systems are properly configured as recommended by Mitsubishi Electric. Mitsubishi Electric recommends taking the following mitigation measures:
Mitigation: GB-50ADA-J: Replace the air conditioning systems to AE-200E, AE-50E or EW-50E Version 7.98 or later
GB-50ADA-J: Replace the air conditioning systems to AE-200E, AE-50E or EW-50E Version 7.98 or later
Patch: TW-50A: Update to Version 7.98 or later
TW-50A: Update to Version 7.98 or later
Mitigation: GB-50ADA-A: Replace the air conditioning systems to AE-200A, AE-50A or EW-50A Version 7.98 or later
GB-50ADA-A: Replace the air conditioning systems to AE-200A, AE-50A or EW-50A Version 7.98 or later
Mitigation: AE-50J: Update to Version 7.98 or later
AE-50J: Update to Version 7.98 or later
Mitigation: AG-150A-J: Replace the air conditioning systems to AE-200E, AE-50E or EW-50E Version 7.98 or later
AG-150A-J: Replace the air conditioning systems to AE-200E, AE-50E or EW-50E Version 7.98 or later
Mitigation: AE-50A: Update to Version 7.98 or later
AE-50A: Update to Version 7.98 or later
Mitigation: AG-150A-A: Replace the air conditioning systems to AE-200A, AE-50A or EW-50A Version 7.98 or later
AG-150A-A: Replace the air conditioning systems to AE-200A, AE-50A or EW-50A Version 7.98 or later
Mitigation: AE-200J: Update to Version 7.98 or later
AE-200J: Update to Version 7.98 or later
Mitigation: EB-50GU-A: Update to Version 7.11 or later
EB-50GU-A: Update to Version 7.11 or later
Mitigation: TE-200A: Update to Version 7.98 or later
TE-200A: Update to Version 7.98 or later
Mitigation: TE-50A: Update to Version 7.98 or later
TE-50A: Update to Version 7.98 or later
Patch: Update to CMU Firmware version 13.6.3
Update to CMU Firmware version 13.6.3
Mitigation: For all versions, apply General Mitigation Factors/Workarounds. Upgrade the system once remediated
For all versions, apply General Mitigation Factors/Workarounds. Upgrade the system once remediated version in available, or apply general mitigation factors.
Patch: Update to CMU Firmware version 13.7.7
Update to CMU Firmware version 13.7.7
Patch: Update to CMU Firmware version 13.7.7
Update to CMU Firmware version 13.7.7
Mitigation: Hitachi ABB Power Grids suggests recommended security practices, operating systems hardening, and f
Hitachi ABB Power Grids suggests recommended security practices, operating systems hardening, and firewall configurations can help protect a user's computer from the attacks. An entry point for this vulnerability is the unsecured operating system on which the product is installed. Hitachi ABB Power Grids recommends hardening the operating system accordingly.
Mitigation: Follow the hardening guidelines published by The Center for Internet Security (CIS).
Follow the hardening guidelines published by The Center for Internet Security (CIS).
Mitigation: Routinely monitor the application process log for unrecognized user sessions originating from outsid
Routinely monitor the application process log for unrecognized user sessions originating from outside the application.
Patch: Retail Operations
Retail Operations
Mitigation: Hitachi ABB Power Grids recommends updating to Version 5.7.3 or later, which resolves this vulnerabi
Hitachi ABB Power Grids recommends updating to Version 5.7.3 or later, which resolves this vulnerability. For more information on this advisory, see the Hitachi ABB Power Grids security advisory or contact Hitachi ABB Power Grids.
Mitigation: Counterparty Settlement Billing (CSB)
Counterparty Settlement Billing (CSB)
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Patch: Update to V8.7.1.3 or later version
Update to V8.7.1.3 or later version
Patch: The table will be updated in case vulnerable products become known.
The table will be updated in case vulnerable products become known.
Mitigation: For users of products that do not have a fixed version or who cannot immediately update the product,
For users of products that do not have a fixed version or who cannot immediately update the product, Mitsubishi Electric Iconics Digital Solutions and Mitsubishi Electric recommend locating control system networks and devices behind firewalls and isolate them from untrusted networks and hosts, to minimize the risk of exploiting this vulnerability.
Patch: Mitsubishi Electric is releasing fixed version 10.97.3 or later for IoTWorX. Please download the fix
Mitsubishi Electric is releasing fixed version 10.97.3 or later for IoTWorX. Please download the fixed version from the link "https://iconicsinc.my.site.com/community/s/iconics-software/a375a000004qDU8AAM/iotworx". For more information on the fixed version, refer to the Mitsubishi Electric security advisory at "https://www.mitsubishielectric.com/psirt/vulnerability/pdf/2024-004_en.pdf".
Mitigation: For users of products that do not have a fixed version or who cannot immediately update the product,
For users of products that do not have a fixed version or who cannot immediately update the product, Mitsubishi Electric Iconics Digital Solutions and Mitsubishi Electric recommend restricting physical access to the personal computer where the product is installed and the network to which the personal computer is connected to prevent unauthorized contact, to minimize the risk of exploiting this vulnerability.
Mitigation: For users of products that do not have a fixed version or who cannot immediately update the product,
For users of products that do not have a fixed version or who cannot immediately update the product, Mitsubishi Electric Iconics Digital Solutions and Mitsubishi Electric recommend preventing the user from clicking on web links in e-mails or other messages from untrusted sources, or from opening attachments in untrusted e-mails, to minimize the risk of exploiting this vulnerability.
Patch: Mitsubishi Electric Iconics Digital Solutions is releasing fixed version 10.97.3 or later for GENESI
Mitsubishi Electric Iconics Digital Solutions is releasing fixed version 10.97.3 or later for GENESIS64, ICONICS Suite, Hyper Historian, AnalytiX, and MobileHMI. Please download the fixed version from the link "https://iconicsinc.my.site.com/community/s/iconics-software/ICONICS_Software__c/00BQQ000008P51V2AS?ICONICS_Software__c-filterId=Product_Version_10_97_3". For more information, refer to the Mitsubishi Electric Iconics Digital Solutions whitepaper on security vulnerabilities. The latest white papers can be found at "https://iconics.com/About/Security/CERT".
Patch: Mitsubishi Electric is releasing fixed version 10.97.3 or later for GENESIS64, ICONICS Suite, Hyper
Mitsubishi Electric is releasing fixed version 10.97.3 or later for GENESIS64, ICONICS Suite, Hyper Historian, AnalytiX, and MobileHMI. Please download the fixed version from the link "https://iconicsinc.my.site.com/community/s/iconics-software/ICONICS_Software__c/00BQQ000008P51V2AS?ICONICS_Software__c-filterId=Product_Version_10_97_3". For more information on the fixed version, refer to the Mitsubishi Electric security advisory at "https://www.mitsubishielectric.com/psirt/vulnerability/pdf/2024-004_en.pdf".
Patch: Mitsubishi Electric Iconics Digital Solutions is releasing fixed version 10.97.3 or later for IoTWor
Mitsubishi Electric Iconics Digital Solutions is releasing fixed version 10.97.3 or later for IoTWorX. Please download the fixed version from the link "https://iconicsinc.my.site.com/community/s/iconics-software/a375a000004qDU8AAM/iotworx". For more information, refer to the Mitsubishi Electric Iconics Digital Solutions whitepaper on security vulnerabilities. The latest white papers can be found at "https://iconics.com/About/Security/CERT".
Mitigation: Update steps:
Update steps:
Patch: CC-Link IE TSN Industrial Managed Switch NZ2MHG-TSNT4: Version "06" or later
CC-Link IE TSN Industrial Managed Switch NZ2MHG-TSNT4: Version "06" or later
Mitigation: Mitsubishi Electric recommends that customers take the following mitigations to minimize the risk of
Mitsubishi Electric recommends that customers take the following mitigations to minimize the risk of exploiting this vulnerability:
Mitigation: Use the products within a LAN and block access from untrusted networks and hosts.
Use the products within a LAN and block access from untrusted networks and hosts.
Patch: CC-Link IE TSN Industrial Managed Switch NZ2MHG-TSNT8F2: Version "06" or later
CC-Link IE TSN Industrial Managed Switch NZ2MHG-TSNT8F2: Version "06" or later
Mitigation: When internet access is required, use a virtual private network (VPN) or other means to prevent unau
When internet access is required, use a virtual private network (VPN) or other means to prevent unauthorized access.
Mitigation: For additional information see Mitsubishi Electric advisory 2024-002
For additional information see Mitsubishi Electric advisory 2024-002
Mitigation: Contact your local Mitsubishi Electric representative to obtain the fixed firmware version file for
Contact your local Mitsubishi Electric representative to obtain the fixed firmware version file for CC-Link IE TSN Industrial Managed Switch.
Mitigation: Fixed versions:
Fixed versions:
Patch: After you log into NZ2MHG-TSNT8F2 or NZ2MHG-TSNT4 through the web interface, change user name and pa
After you log into NZ2MHG-TSNT8F2 or NZ2MHG-TSNT4 through the web interface, change user name and password from default setting at [Account Management] displayed on the function menu. Also, set the proper access permissions for the users.
Mitigation: Restrict physical access to the product and your computer and network equipment on the same network.
Restrict physical access to the product and your computer and network equipment on the same network.
Patch: After logging into NZ2MHG-TSNT8F2 or NZ2MHG-TSNT4 through the web interface, update the firmware to
After logging into NZ2MHG-TSNT8F2 or NZ2MHG-TSNT4 through the web interface, update the firmware to the fixed firmware version file mentioned in the above 1 by the function of [System] -> [System Management] -> [Firmware Upgrade] from Function menu. For the detailed procedures, please refer to "CC-Link IE TSN Industrial Managed Switch User's Manual (SH-082449ENG)".
Mitigation: Mitsubishi Electric recommends users to update to the fixed versions by following the steps below.
Mitsubishi Electric recommends users to update to the fixed versions by following the steps below.
Mitigation: Follow General mitigation Factors
Follow General mitigation Factors
Patch: Upgrade to MACH SCM version 4.38.4
Upgrade to MACH SCM version 4.38.4
Patch: Upgrade to MACH SCM Tools version 1.9
Upgrade to MACH SCM Tools version 1.9
Mitigation: Unified Automation has released software (login required) to address the .NET Framework vulnerabilit
Unified Automation has released software (login required) to address the .NET Framework vulnerabilities. OPC Foundation recommends users deploying OPC UA .NET products built against the .NET 4.5, 4.0, and 3.5 Frameworks should contact the product supplier to determine if an update is needed. Users should also consider upgrading to a version of the product using .NET 4.5.2 Framework or later. It is recommended users avoid using the end-of-life version of the .NET Framework due to the risk of unpatched vulnerabilities.
Mitigation: Hitachi Energy recommends applying the available security patch or updating LinkOne to v3.27. Contac
Hitachi Energy recommends applying the available security patch or updating LinkOne to v3.27. Contact Hitachi Energy for more information on applying the security patch or updating LinkOne to v3.27
Mitigation: Recommended security practices and firewall configurations can help protect the application from att
Recommended security practices and firewall configurations can help protect the application from attacks that originate from outside the network. Such practices include physically protecting the application from direct access by unauthorized personnel, having no direct connections to the Internet. For the end-user of the application, it is recommended to use the latest browser when accessing the LinkOne application.
Mitigation: Additional recommendation is to follow the hardening guidelines published by The Center for Internet
Additional recommendation is to follow the hardening guidelines published by The Center for Internet Security (CIS) to protect the host Operating System on which the LinkOne is hosted.
Mitigation: For additional information and support please contact your product provider or Hitachi Energy servic
For additional information and support please contact your product provider or Hitachi Energy service.
Mitigation: For more information, review Hitachi Energy's security advisory 8DBD000079
For more information, review Hitachi Energy's security advisory 8DBD000079
Patch: For more information see the associated Hitachi Energy PSIRT security advisory 8DBD000218 Cybersecur
For more information see the associated Hitachi Energy PSIRT security advisory 8DBD000218 Cybersecurity Advisory - Multiple vulnerabilities in Hitachi Energy MicroSCADA Pro/X SYS600 product.
Mitigation: The following product versions have been fixed:
The following product versions have been fixed:
Mitigation: MicroSCADA X SYS600 10.7 is a fixed version for CVE-2025-39205
MicroSCADA X SYS600 10.7 is a fixed version for CVE-2025-39205
Mitigation: (CVE-2025-39205) Hitachi Energy MicroSCADA X SYS600 versions from 10.3 to 10.6: Update to version 10
(CVE-2025-39205) Hitachi Energy MicroSCADA X SYS600 versions from 10.3 to 10.6: Update to version 10.7
Mitigation: Hitachi Energy has identified the following specific workarounds and mitigations users can apply to
Hitachi Energy has identified the following specific workarounds and mitigations users can apply to reduce risk:
Mitigation: Apply general mitigation factors
Apply general mitigation factors
Patch: Upgrade to version 3.5
Upgrade to version 3.5
Patch: Update to V2.5.2 or later version
Update to V2.5.2 or later version
Patch: Update to V2.1.6 or later version
Update to V2.1.6 or later version
Patch: Update to V2.6 or later version
Update to V2.6 or later version
Patch: Update to V4.1.8, installing latest Sinumerik Integrate Product suite.
Update to V4.1.8, installing latest Sinumerik Integrate Product suite.
Patch: Update to V2.6 or later version
Update to V2.6 or later version
Patch: Update to V03.01 or later version. Use the Mindsphere web frontend to update
Update to V03.01 or later version. Use the Mindsphere web frontend to update
Patch: Update to V14 SP1 Update 6 or later version
Update to V14 SP1 Update 6 or later version
Mitigation: Disable web server within the device configuration if it is not used or limit access to the web serv
Disable web server within the device configuration if it is not used or limit access to the web server on a particular Ethernet/PROFINET port/interface if possible (setting is under General / Web server access).
Patch: Update to V3.14 P021 or later version
Update to V3.14 P021 or later version
Patch: Update to V14 SP1 Upd 6 or later version
Update to V14 SP1 Upd 6 or later version
Patch: Update to V15 Update 2 or later version
Update to V15 Update 2 or later version
Patch: Update to V3.16 P002 or later version
Update to V3.16 P002 or later version
Patch: Update to V5.0.3 or later version
Update to V5.0.3 or later version
Patch: Update to V13 SP2 Update 2 or later version
Update to V13 SP2 Update 2 or later version
Patch: Update to V4.2.3 or later version
Update to V4.2.3 or later version
Patch: Update to V2.1.6 or later version
Update to V2.1.6 or later version
Patch: Update to V2.5.2 or later version
Update to V2.5.2 or later version
Patch: Update to V2.0.12 / 3.0.12, installing latest Sinumerik Integrate Product suite.
Update to V2.0.12 / 3.0.12, installing latest Sinumerik Integrate Product suite.
Patch: Update to V3.15 P014 or later version
Update to V3.15 P014 or later version
Patch: Update to V2.1.1.0 or later version
Update to V2.1.1.0 or later version
Patch: Update to V15.1 or later version
Update to V15.1 or later version
Mitigation: Limit network access using appropriate mechanisms (e.g., firewalls)
Limit network access using appropriate mechanisms (e.g., firewalls)
Patch: Update to V2.0.12 / 3.0.12, installing latest Sinumerik Integrate Product suite.
Update to V2.0.12 / 3.0.12, installing latest Sinumerik Integrate Product suite.
Patch: Update to V15.1 or later version
Update to V15.1 or later version
Patch: Update to V2.1.1.0 or later version
Update to V2.1.1.0 or later version
Patch: Update to V4.1.8, installing latest Sinumerik Integrate Product suite.
Update to V4.1.8, installing latest Sinumerik Integrate Product suite.
Patch: Update to V3.14 P021 or later version
Update to V3.14 P021 or later version
Patch: Update to V3.16 P002 or later version
Update to V3.16 P002 or later version
Patch: Update to V15 Update 2 or later version
Update to V15 Update 2 or later version
Patch: Update to V5.0.3 or later version
Update to V5.0.3 or later version
Patch: Update to V3.15 P014 or later version
Update to V3.15 P014 or later version
Patch: Update to V4.2.3 or later version
Update to V4.2.3 or later version
Patch: Update to V13 SP2 Update 2 or later version
Update to V13 SP2 Update 2 or later version
Patch: Update to V03.01 or later version
Update to V03.01 or later version
Patch: Update to V14 SP1 Upd 6 or later version
Update to V14 SP1 Upd 6 or later version
Mitigation: Limit network access using appropriate mechanisms (e.g., firewalls)
Limit network access using appropriate mechanisms (e.g., firewalls)
Mitigation: Disable web server within the device configuration if it is not used or limit access to the web serv
Disable web server within the device configuration if it is not used or limit access to the web server on a particular Ethernet/PROFINET port/interface if possible (setting is under General / Web server access).
Patch: Update to V14 SP1 Update 6 or later version
Update to V14 SP1 Update 6 or later version
Mitigation: Do not directly connect to the Internet.
Do not directly connect to the Internet.
Mitigation: Process control systems should not be used for Internet surfing, instant messaging, or receiving e-m
Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Mitigation: Separated from other networks by means of a firewall system with a minimal number of ports exposed.
Separated from other networks by means of a firewall system with a minimal number of ports exposed.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: Disable BCI IEC 60870-5-104 function by configuration if it is not used. Note: By default, the BCI I
Disable BCI IEC 60870-5-104 function by configuration if it is not used. Note: By default, the BCI IEC 60870-5-104 is disabled.
Mitigation: Please see Hitachi Energy advisory 8DBD000063 for additional mitigation and update information.
Please see Hitachi Energy advisory 8DBD000063 for additional mitigation and update information.
Mitigation: Update to RTU500 series CMU Firmware Version 12.6.5.0 or later (e.g., RTU500 CMU Firmware Version 12
Update to RTU500 series CMU Firmware Version 12.6.5.0 or later (e.g., RTU500 CMU Firmware Version 12.7.* or CMU Firmware Version 13.2.* or later).
Patch: Update to V1.0 SP2 or later version
Update to V1.0 SP2 or later version
Patch: Update to V1.0 SP2 or later version
Update to V1.0 SP2 or later version
Mitigation: For other affected versions, please follow mitigation factors in Hitachi Energy's advisories. Hitach
For other affected versions, please follow mitigation factors in Hitachi Energy's advisories. Hitachi Energy recommends the following security practices and firewall configurations to help protect process control networks from attacks that originate from outside the network: Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: Relion 670/650/SAM600-IO series Version 2.2.5: Update to Version 2.2.5.2
Relion 670/650/SAM600-IO series Version 2.2.5: Update to Version 2.2.5.2
Mitigation: Relion 670 series Version 2.2.3: Update to Version 2.2.3.5
Relion 670 series Version 2.2.3: Update to Version 2.2.3.5
Mitigation: Limit open database connectivity (ODBC) protocol for device configuration within the substation only
Limit open database connectivity (ODBC) protocol for device configuration within the substation only.
Mitigation: For additional information and support please contact your product provider or Hitachi Energy servic
For additional information and support please contact your product provider or Hitachi Energy service organization. For contact information, visit Hitachi Energy contact-centers.
Patch: Relion 650 series Version 1.3: Update to Version 1.3.0.8
Relion 650 series Version 1.3: Update to Version 1.3.0.8
Mitigation: Do not directly connect to the Internet.
Do not directly connect to the Internet.
Mitigation: Please see the Hitachi Energy PWC600, GMS600, and Relion advisories for additional mitigation and up
Please see the Hitachi Energy PWC600, GMS600, and Relion advisories for additional mitigation and update information.
Mitigation: Separate from other networks by means of a firewall system that has a minimal number of ports expose
Separate from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: Process control systems should not be used for Internet surfing, instant messaging, or receiving e-m
Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Patch: Relion 650 series Version 1.2: Update to Version 1.3
Relion 650 series Version 1.2: Update to Version 1.3
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Patch: Update to Relion 670/650 series version 2.0.0.14
Update to Relion 670/650 series version 2.0.0.14
Patch: Update to Relion 650 series version 1.3.0.8
Update to Relion 650 series version 1.3.0.8
Patch: Update to Relion 670/650/SAM600-IO series version 2.2.1.8
Update to Relion 670/650/SAM600-IO series version 2.2.1.8
Patch: Update to Relion 670/650/SAM600-IO series version 2.2.5.2
Update to Relion 670/650/SAM600-IO series version 2.2.5.2
Patch: Update to Relion 670/650 series version 2.1.0.5
Update to Relion 670/650 series version 2.1.0.5
Patch: Update to Relion 670 series version 2.2.2.5
Update to Relion 670 series version 2.2.2.5
Mitigation: Refer to the Mitigation Factors/Workaround Section for the current mitigation strategy or upgrade to
Refer to the Mitigation Factors/Workaround Section for the current mitigation strategy or upgrade to Relion 650 series version 1.3.
Mitigation: Refer to the General Mitigation Factors/Workaround Section for the current mitigation strategy.
Refer to the General Mitigation Factors/Workaround Section for the current mitigation strategy.
Patch: Update to Relion 670/650 series version 2.2.4.3
Update to Relion 670/650 series version 2.2.4.3
Patch: Update to Relion 670 series version 2.2.3.5
Update to Relion 670 series version 2.2.3.5
Mitigation: Ensure the firewall system only has necessary ports exposed.
Ensure the firewall system only has necessary ports exposed.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000T085.
For more information, see Hitachi Energy advisory 8DBD000T085.
Patch: Links used for access to an MSM system should not be sent by email. Links to MSM should not be opene
Links used for access to an MSM system should not be sent by email. Links to MSM should not be opened. Suspicious emails should be reported to the IT administrator.
Patch: MSM should only be used to access the internet for authorized information. Portable computers and re
MSM should only be used to access the internet for authorized information. Portable computers and removable storage media should be carefully scanned for viruses before connecting to a network.
Mitigation: Use firewall systems to separate process control systems from other networks.
Use firewall systems to separate process control systems from other networks.
Mitigation: Ensure process control systems have no direct connections to the internet.
Ensure process control systems have no direct connections to the internet.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Hitachi Energy recommends security practices and firewall configurations to help protect a network f
Hitachi Energy recommends security practices and firewall configurations to help protect a network from attacks originating outside the network
Patch: Update to 2.2.5.2 version or latest
Update to 2.2.5.2 version or latest
Mitigation: Hitachi Energy PWC600 - See public advisory.
Hitachi Energy PWC600 - See public advisory.
Mitigation: Zephyr Project: Update to 2.5 or later. Patches available for prior supported versions. See the Zep
Zephyr Project: Update to 2.5 or later. Patches available for prior supported versions. See the Zephyr security advisory for more information.
Mitigation: Hitachi Energy GMS600 - See public advisory.
Hitachi Energy GMS600 - See public advisory.
Mitigation: Hitachi Energy RTU500 series CMU - Updates available for some firmware versions - See public advisor
Hitachi Energy RTU500 series CMU - Updates available for some firmware versions - See public advisory.
Mitigation: Hitachi Energy REB500 - See public advisory.
Hitachi Energy REB500 - See public advisory.
Mitigation: Hitachi Energy Relion 670, 650 series and SAM600-IO - See public advisory
Hitachi Energy Relion 670, 650 series and SAM600-IO - See public advisory
Mitigation: Hitachi Energy Modular Switchgear Monitoring System MSM - Protect your network - See public advisory
Hitachi Energy Modular Switchgear Monitoring System MSM - Protect your network - See public advisory.
Patch: Update to V5.2.6 or later version
Update to V5.2.6 or later version
Patch: Update to V5.5.2 or later version
Update to V5.5.2 or later version
Mitigation: Refer to the Mitigation Factors/Workaround Section for the current mitigation strategy.
Refer to the Mitigation Factors/Workaround Section for the current mitigation strategy.
Patch: Update to 2.2.3.5 version or latest
Update to 2.2.3.5 version or latest
Patch: Update to 2.2.1.8 version or latest
Update to 2.2.1.8 version or latest
Patch: Update to 2.2.4.3 version or latest
Update to 2.2.4.3 version or latest
Patch: Update to 2.2.2.5 version or latest
Update to 2.2.2.5 version or latest
Mitigation: Ensure process control systems are not directly connected to the internet.
Ensure process control systems are not directly connected to the internet.
Mitigation: Avoid using process control systems for browsing the internet, instant messaging, or receiving email
Avoid using process control systems for browsing the internet, instant messaging, or receiving emails.
Patch: 1MRS758440, PCM600 Cyber Security Deployment Guideline
1MRS758440, PCM600 Cyber Security Deployment Guideline
Mitigation: Scan removable storage media for malware prior to connection to a process control system.
Scan removable storage media for malware prior to connection to a process control system.
Mitigation: Hitachi Energy recommends the following steps to mitigate the risk of vulnerability exploitation:
Hitachi Energy recommends the following steps to mitigate the risk of vulnerability exploitation:
Mitigation: Protect process control systems from direct, physical access by unauthorized personnel.
Protect process control systems from direct, physical access by unauthorized personnel.
Mitigation: For more information, see Hitachi Energy's Cybersecurity Advisory.
For more information, see Hitachi Energy's Cybersecurity Advisory.
Mitigation: Separate process control systems from other networks via network segmentation techniques.
Separate process control systems from other networks via network segmentation techniques.
Patch: Implement the least privilege principle, continuously revising permissions and accesses to PCM600 re
Implement the least privilege principle, continuously revising permissions and accesses to PCM600 related resources, including the backup file, PCMI, PCMP, PCMA and PCMT files.
Mitigation: Hitachi Energy released the following recommended immediate actions:
Hitachi Energy released the following recommended immediate actions:
Patch: Update to PCM600 v2.11 Hotfix 20240426 or apply mitigation factors/workarounds as described below.
Update to PCM600 v2.11 Hotfix 20240426 or apply mitigation factors/workarounds as described below.
Patch: After applying the hotfix, reimport and export the backup files to secure that they do not contain t
After applying the hotfix, reimport and export the backup files to secure that they do not contain this vulnerability. More information to deploy PCM600 securely can be found in the following documents:
Mitigation: Use a firewall system with the minimal number of exposed ports to help protect a process control net
Use a firewall system with the minimal number of exposed ports to help protect a process control network from attacks originating from outside the network.
Mitigation: Mitsubishi Electric recommends the following:
Mitsubishi Electric recommends the following:
Mitigation: Restrict physical access to your computer and network equipment on the same network.
Restrict physical access to your computer and network equipment on the same network.
Mitigation: For specific update instructions and additional details see Mitsubishi Electric advisory 2023-011.
For specific update instructions and additional details see Mitsubishi Electric advisory 2023-011.
Mitigation: Use the products within a LAN and block access from untrusted networks and hosts.
Use the products within a LAN and block access from untrusted networks and hosts.
Patch: Update CC-Link IE TSN Industrial Managed Switch NZ2MHG-TSNT8F2 and NZ2MHG-TSNT4 to firmware version
Update CC-Link IE TSN Industrial Managed Switch NZ2MHG-TSNT8F2 and NZ2MHG-TSNT4 to firmware version 06 or later
Mitigation: After you log into NZ2MHG-TSNT8F2 or NZ2MHG-TSNT4 with the web interface, change user name and passw
After you log into NZ2MHG-TSNT8F2 or NZ2MHG-TSNT4 with the web interface, change user name and password from default setting at [Account Management] displayed on the function menu. Also, set the proper access permissions for the users.
Mitigation: Additionally, Mitsubishi Electric recommends that customers take the following mitigations to minimi
Additionally, Mitsubishi Electric recommends that customers take the following mitigations to minimize the risk of exploitation of these vulnerabilities:
Mitigation: When Internet access is required, use a virtual private network (VPN) or other means to prevent unau
When Internet access is required, use a virtual private network (VPN) or other means to prevent unauthorized access.
Mitigation: Do not use control systems networks for Internet browsing, instant messaging, or receiving e-mails.
Do not use control systems networks for Internet browsing, instant messaging, or receiving e-mails.
Mitigation: Separate control systems from other networks by means of a firewall system that has a minimal number
Separate control systems from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: Hitachi ABB Power Grids has corrected the problem in the following product versions and recommends u
Hitachi ABB Power Grids has corrected the problem in the following product versions and recommends users apply the firmware update at the earliest availability
Mitigation: For additional information and support please contact a product provider or a Hitachi ABB Power Grid
For additional information and support please contact a product provider or a Hitachi ABB Power Grids service organization.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: XMC20 R4: COGE5 Version co5ne_r1h07_12.esw (and newer)
XMC20 R4: COGE5 Version co5ne_r1h07_12.esw (and newer)
Mitigation: Do not directly connect control systems to the Internet.
Do not directly connect control systems to the Internet.
Mitigation: Hitachi ABB Power Grids published cybersecurity advisory PGVU-PGGA-XMC20-2020034 to give users more
Hitachi ABB Power Grids published cybersecurity advisory PGVU-PGGA-XMC20-2020034 to give users more information about this issue.
Mitigation: XMC20 R6: COGE5 Version co5ne_r2d14_03.esw (and newer)
XMC20 R6: COGE5 Version co5ne_r2d14_03.esw (and newer)
Mitigation: Hitachi ABB Power Grids recommends security practices and firewall configurations to help protect a
Hitachi ABB Power Grids recommends security practices and firewall configurations to help protect a process control network from attacks originating from outside the network. Such practices require process control systems be physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by a firewall system that has a minimal number of ports exposed. Other systems must be evaluated on case-by-case basis. Process control systems should not be used for Internet browsing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Hitachi ABB Power Grids recommends users apply the following firmware: FOX61x R2: CESM1/CESM2: Updat
Hitachi ABB Power Grids recommends users apply the following firmware: FOX61x R2: CESM1/CESM2: Update to Version cesne_r2d14_03.esw or newer
Mitigation: Hitachi ABB Power Grids recommends users apply the following firmware: FOX61x R1: CESM1/CESM2: Updat
Hitachi ABB Power Grids recommends users apply the following firmware: FOX61x R1: CESM1/CESM2: Update to Version cesne_r1h07_12.esw or newer
Mitigation: For additional information and support please contact a product provider or Hitachi ABB Power Grids
For additional information and support please contact a product provider or Hitachi ABB Power Grids service organization.
Patch: Update to FOXMAN-UN R15B PC5 (under development) and apply general mitigation factors.
Update to FOXMAN-UN R15B PC5 (under development) and apply general mitigation factors.
Patch: Update to UNEM R15B PC5 (under development) and apply general mitigation factors.
Update to UNEM R15B PC5 (under development) and apply general mitigation factors.
Mitigation: Apply general mitigation factors
Apply general mitigation factors
Patch: Upgrade to version 9.8 when available
Upgrade to version 9.8 when available
Patch: Follow security practices as defined in SDM600 security deployment guideline and firewall configurat
Follow security practices as defined in SDM600 security deployment guideline and firewall configurations to help protect process control networks from attacks that originate from outside the network. Such practices include that process control systems are: Physically protected from direct access by unauthorized personnel. Not directly connected to the Internet. Separated from other networks by means of a firewall system that has a minimal number of ports exposed. Not used for Internet surfing, instant messaging, or receiving e-mails.
Mitigation: For additional information, see Hitachi ABB Power Grids security advisory.
For additional information, see Hitachi ABB Power Grids security advisory.
Patch: Implement and continuously revise least privileges principles to minimize permissions and accesses t
Implement and continuously revise least privileges principles to minimize permissions and accesses to SDM600 related resources.
Patch: Hitachi ABB Power Grids recommends users apply update Version 1.2 FP2 HF6 (Build Nr. 1.2.14002.257)
Hitachi ABB Power Grids recommends users apply update Version 1.2 FP2 HF6 (Build Nr. 1.2.14002.257) or newer at the earliest convenience. Users can download the latest SDM600 version from the product website. After successful upgrade, Hitachi ABB Power Grids recommends moving previously created vulnerable backups to a secure location to avoid unauthorized access.
Mitigation: Starting from Festo Automation Suite version 2.8.0.138, Codesys is no longer bundled with the suite
Starting from Festo Automation Suite version 2.8.0.138, Codesys is no longer bundled with the suite and must be downloaded and installed separately by the customer. To mitigate this vulnerability customers are advised to: Download the latest, patched version of Codesys directly from the official Codesys website. Follow the installation and update instructions provided by Codesys to ensure all security fixes are applied. Regularly monitor Codesys security advisories and apply updates promptly. Maintain the Festo Automation Suite connector up to date by installing FAS updates as released by Festo.
Mitigation: For more information see the associated Festo SE & Co. KG security advisory FSA-202202 FSA-202202: F
For more information see the associated Festo SE & Co. KG security advisory FSA-202202 FSA-202202: Festo: Controller CECC-S,LK,D family <= 2.3.8.1 - multiple vulnerabilities in CODESYS V3 runtime system - HTML, FSA-202202: Festo: Controller CECC-S,LK,D family <= 2.3.8.1 - multiple vulnerabilities in CODESYS V3 runtime system - CSAF.
Mitigation: For more information see the associated Festo SE & Co. KG security advisory FSA-202202 FSA-202202: F
For more information see the associated Festo SE & Co. KG security advisory FSA-202202 FSA-202202: Festo: Controller CECC-S,LK,D family <= 2.3.8.1 - multiple vulnerabilities in CODESYS V3 runtime system - HTML, FSA-202202: Festo: Controller CECC-S,LK,D family <= 2.3.8.1 - multiple vulnerabilities in CODESYS V3 runtime system - CSAF.
Mitigation: The following product versions have been fixed:
The following product versions have been fixed:
Mitigation: (CVE-2018-20026, CVE-2019-9010¸ CVE-2010-5250, CVE-2019-9008, CVE-2019-18858, CVE-2019-13548, CVE-20
(CVE-2018-20026, CVE-2019-9010¸ CVE-2010-5250, CVE-2019-9008, CVE-2019-18858, CVE-2019-13548, CVE-2019-13542, CVE-2019-9009, CVE-2019-9012, CVE-2020-7052, CVE-2019-13532, CVE-2018-20025, CVE-2018-10612, CVE-2017-3735) (Product Group: Festo Firmware (R05 (17.06.2016) = 2.3.8.0) installed on Festo Hardware Controller CECC-D(All versions), Festo Firmware (R06 (11.10.2016) = 2.3.8.1) installed on Festo Hardware Controller CECC-LK(All versions), Festo Firmware (R05 (17.06.2016) = 2.3.8.0) installed on Festo Hardware Controller CECC-S(All versions)): Update to version 2.4.2.0. This also fixes CODESYS Advisory 2017-01, CODESYS Advisory 2017-03, CODESYS Advisory 2017-06, CODESYS Advisory 2017-07, CODESYS Advisory 2017-09, CODESYS Advisory 2018-04, CODESYS Advisory 2018-05, CODESYS Advisory 2018-07, CODESYS Advisory 2018-11.
Mitigation: For more information see the associated Festo SE & Co. KG security advisory FSA-202202 FSA-202202: F
For more information see the associated Festo SE & Co. KG security advisory FSA-202202 FSA-202202: Festo: Controller CECC-S,LK,D family <= 2.3.8.1 - multiple vulnerabilities in CODESYS V3 runtime system - HTML, FSA-202202: Festo: Controller CECC-S,LK,D family <= 2.3.8.1 - multiple vulnerabilities in CODESYS V3 runtime system - CSAF.
Mitigation: Festo has identified the following specific workarounds and mitigations users can apply to reduce ri
Festo has identified the following specific workarounds and mitigations users can apply to reduce risk:
Mitigation: For more information see the associated Festo SE & Co. KG security advisory FSA-202202 FSA-202202: F
For more information see the associated Festo SE & Co. KG security advisory FSA-202202 FSA-202202: Festo: Controller CECC-S,LK,D family <= 2.3.8.1 - multiple vulnerabilities in CODESYS V3 runtime system - HTML, FSA-202202: Festo: Controller CECC-S,LK,D family <= 2.3.8.1 - multiple vulnerabilities in CODESYS V3 runtime system - CSAF.
Patch: Update to V13.3.0.1 or later version
Update to V13.3.0.1 or later version
Patch: Update to V5.1 QU1 or later version
Update to V5.1 QU1 or later version
Patch: Vulnerabilities fixed on central cloud service; no user actions necessary
Vulnerabilities fixed on central cloud service; no user actions necessary
Patch: A hotfix is available; please contact customer support to receive the hotfix
A hotfix is available; please contact customer support to receive the hotfix
Patch: Update Teamcenter to any fix version available for the different version lines of Teamcenter, see ht
Update Teamcenter to any fix version available for the different version lines of Teamcenter, see https://support.sw.siemens.com/en- US/knowledge-base/PL8600700
Patch: Vulnerability CVE-2021-44228 fixed on central cloud service; no user actions necessary
Vulnerability CVE-2021-44228 fixed on central cloud service; no user actions necessary
Patch: Remove the JndiLookup class from the classpath.
Remove the JndiLookup class from the classpath.
Patch: Update to V13.0.1 or later version
Update to V13.0.1 or later version
Patch: Apply the hotfix
Apply the hotfix
Patch: Update to V5.2.6 or later version
Update to V5.2.6 or later version
Patch: Vulnerabilities fixed on central cloud services starting 2021-12-11; no user actions necessary
Vulnerabilities fixed on central cloud services starting 2021-12-11; no user actions necessary
Patch: Update to V12.4.0.12 or later version
Update to V12.4.0.12 or later version
Patch: Download and install the updated TCCS setup from the Siemens Support Center; for details see https:/
Download and install the updated TCCS setup from the Siemens Support Center; for details see https://support.sw.siemens.com/knowledge- base/PL8615527
Patch: Vulnerabilities fixed on central cloud service starting 2021-12-19; no user actions necessary
Vulnerabilities fixed on central cloud service starting 2021-12-19; no user actions necessary
Patch: Update to V10.4.2 or later version
Update to V10.4.2 or later version
Patch: Update to V12.4.1 or later version
Update to V12.4.1 or later version
Patch: Update to V2020.1 SP2202 or later version
Update to V2020.1 SP2202 or later version
Patch: Update to V2000.3400 or later version
Update to V2000.3400 or later version
Patch: Update to VX.2.10 Update 4 or later version
Update to VX.2.10 Update 4 or later version
Patch: Update to V13.2.1.1 or V13.3.0.0 or later version
Update to V13.2.1.1 or V13.3.0.0 or later version
Patch: Simcenter Testlab Data Management team will contact all impacted customer to deploy the mitigation m
Simcenter Testlab Data Management team will contact all impacted customer to deploy the mitigation measures. This action will secure your installation against Log4Shell vulnerability. For further information see: https://support.sw.siemens.com/en-US/knowledge- base/PL8601418
Patch: Remove the JndiLookup class from the classpath. Detailed instructions are available at https://suppo
Remove the JndiLookup class from the classpath. Detailed instructions are available at https://support.industry.siemens.com/cs/ww/en/view/109805562/
Patch: Update to VX.2.7 Update 19 or later version
Update to VX.2.7 Update 19 or later version
Patch: Update to V2008 or later version
Update to V2008 or later version
Patch: Update to V2021.1 SP2202 or later version
Update to V2021.1 SP2202 or later version
Patch: Update to 2022.1-2008 or later version
Update to 2022.1-2008 or later version
Patch: Update to V21Q4 and apply the patch. Please contact your local Siemens representative.
Update to V21Q4 and apply the patch. Please contact your local Siemens representative.
Patch: Update to V4.70 SP9 and apply Security Patch 1. Please contact your local Siemens representative.
Update to V4.70 SP9 and apply Security Patch 1. Please contact your local Siemens representative.
Patch: Update to V4.1.2 or later version
Update to V4.1.2 or later version
Patch: Update to V13.2.0.1 or later version
Update to V13.2.0.1 or later version
Patch: Update to V5.0.11 or later version
Update to V5.0.11 or later version
Patch: Update to V6.3 or later version
Update to V6.3 or later version
Patch: Update to VX.2.10 Update 4 or later version
Update to VX.2.10 Update 4 or later version
Patch: Update to VX.2.8 Update 13 or later version
Update to VX.2.8 Update 13 or later version
Patch: Update to V4.1.1.1 or later version
Update to V4.1.1.1 or later version
Patch: Vulnerabilities fixed with update on 2021-12-16; no user actions necessary
Vulnerabilities fixed with update on 2021-12-16; no user actions necessary
Patch: Update to V13.0.0.2 or later version
Update to V13.0.0.2 or later version
Patch: Update to V2022 SP2202 or later version
Update to V2022 SP2202 or later version
Patch: Update to V13.0.0.9 or later version
Update to V13.0.0.9 or later version
Patch: Apply the patch
Apply the patch
Patch: Update to V2.85.7.5 or later version
Update to V2.85.7.5 or later version
Patch: Vulnerabilities fixed on central cloud services starting 2021-12-10; no user actions necessary
Vulnerabilities fixed on central cloud services starting 2021-12-10; no user actions necessary
Patch: Specific fix versions based on V6.0.2 and V6.0.3 were released and deployed for all affected project
Specific fix versions based on V6.0.2 and V6.0.3 were released and deployed for all affected projects
Patch: Update the driver for the SmartRAID controller to V2.6.6 or later version, available at https://stor
Update the driver for the SmartRAID controller to V2.6.6 or later version, available at https://storage.microsemi.com/en- us/support/raid/sas_raid/asr-3151-4i/
Patch: Update to V3.3.0.7 or later version
Update to V3.3.0.7 or later version
Patch: Update to V4.3.13 or later version
Update to V4.3.13 or later version
Patch: Update to V5.1.5 or later version
Update to V5.1.5 or later version
Patch: Update to V1.7.18 or later version, as provided via cRSP V13.17.2 or later version
Update to V1.7.18 or later version, as provided via cRSP V13.17.2 or later version
Patch: Update to V2008 or later version
Update to V2008 or later version
Patch: Update to V5.1.8 or later version
Update to V5.1.8 or later version
Patch: Update to V1973.4340 or later version
Update to V1973.4340 or later version
Patch: Update to V8.6.2.472 or later version
Update to V8.6.2.472 or later version
Patch: Update the UAA component to V75.8.3
Update the UAA component to V75.8.3
Patch: Update to V2.3.2 or later version; please contact customer support to receive the latest version
Update to V2.3.2 or later version; please contact customer support to receive the latest version
Patch: Update to V13.0.1.2 or later version
Update to V13.0.1.2 or later version
Patch: Update to V4.2.0.2 or later version
Update to V4.2.0.2 or later version
Patch: Update to V2021.2.2 or later version
Update to V2021.2.2 or later version
Patch: Update to V1.5 SP4 and apply the patch
Update to V1.5 SP4 and apply the patch
Patch: Update to V5.0.6 or later version
Update to V5.0.6 or later version
Patch: Update to V13.2.0.6 or later version
Update to V13.2.0.6 or later version
Patch: Update to V2020.1 SP2202 or later version
Update to V2020.1 SP2202 or later version
Patch: Update to V12.3.11 or later version
Update to V12.3.11 or later version
Patch: Remove the JndiLookup class from the classpath. Detailed instructions are available at https://suppo
Remove the JndiLookup class from the classpath. Detailed instructions are available at https://support.industry.siemens.com/cs/ww/en/view/109805602/
Patch: Update to V18.1 or later version to fix CVE-2021-44228
Update to V18.1 or later version to fix CVE-2021-44228
Patch: Update to V13.1.0.1 or later version
Update to V13.1.0.1 or later version
Patch: Update to V12.2.0.18 or later version
Update to V12.2.0.18 or later version
Patch: Update to V13.1.0.8 or later version
Update to V13.1.0.8 or later version
Patch: Update to V5.2.3 or later version
Update to V5.2.3 or later version
Patch: Apply the hotfix
Apply the hotfix
Patch: Update to V2.2.7 or later version; please contact customer support to receive the latest version
Update to V2.2.7 or later version; please contact customer support to receive the latest version
Patch: Update to V12.3.0.15 or later version
Update to V12.3.0.15 or later version
Patch: Find detailed remediation and mitigation information on the EnergyIP docs portal at: https://docs.em
Find detailed remediation and mitigation information on the EnergyIP docs portal at: https://docs.emeter.com/display/public/WELCOME/Energy IP+Security+Advisory+for+Log4Shell+Vulnerability
Patch: HEEDS Connect team will contact all impacted customers to deploy a new log4j version. This action wi
HEEDS Connect team will contact all impacted customers to deploy a new log4j version. This action will secure your installation against Log4Shell vulnerability. For further information see: https://support.sw.siemens.com/en-US/knowledge-base/PL8601661
Patch: Update to V4.0.0.2 or later version
Update to V4.0.0.2 or later version
Patch: Although the Cloud Foundry environment itself is not vulnerable to this exploit, we nevertheless rec
Although the Cloud Foundry environment itself is not vulnerable to this exploit, we nevertheless recommend to upgrade log4j-core to the latest available version if log4j-core is part of your project. https://support.sw.siemens.com/en-US/product/268530510/knowledge- base/PL8600797
Patch: Update to V4.0.3 or later version
Update to V4.0.3 or later version
Patch: Update Teamcenter to any fix version available for the different version lines of Teamcenter, see ht
Update Teamcenter to any fix version available for the different version lines of Teamcenter, see https://support.sw.siemens.com/en- US/knowledge-base/PL8600700
Patch: Update to VX.2.10 Update 4 or later version
Update to VX.2.10 Update 4 or later version
Patch: Update to V1.6 SP1 and apply the patch
Update to V1.6 SP1 and apply the patch
Patch: Update to V3.5 or later version
Update to V3.5 or later version
Patch: Follow the remediation steps documented at https://ask.adaptec.com/app/answers/detail/a_id/17527/
Follow the remediation steps documented at https://ask.adaptec.com/app/answers/detail/a_id/17527/
Patch: Update to V4.3.3 or later version
Update to V4.3.3 or later version
Patch: Apply the hotfix, available for versions V14.1, V15.0, V15.1, V15.1.2, V16.0, V16.0.1, V16.0.2, V16.
Apply the hotfix, available for versions V14.1, V15.0, V15.1, V15.1.2, V16.0, V16.0.1, V16.0.2, V16.1, V16.1.1, V16.1.2
Patch: Update to VX.2.7 Update 19 or later version
Update to VX.2.7 Update 19 or later version
Patch: Update to V12.2.8 or later version
Update to V12.2.8 or later version
Patch: Update to V2019.1 SP2204 or later version
Update to V2019.1 SP2204 or later version
Patch: Vulnerabilities fixed with update on 2021-12-23; no user actions necessary
Vulnerabilities fixed with update on 2021-12-23; no user actions necessary
Patch: Update to VX.2.10 Update 4 or later version
Update to VX.2.10 Update 4 or later version
Mitigation: Specific mitigations and how to apply are described in the SE Controls Security Announcement Inciden
Specific mitigations and how to apply are described in the SE Controls Security Announcement Incident 2021-01, available in the customer portal. https://cep.siemens-energy.com/cep/
Mitigation: Ensure that SPPA-T3000 is set up according to the security concept defined in the SPPA-T3000 securit
Ensure that SPPA-T3000 is set up according to the security concept defined in the SPPA-T3000 security manual
Mitigation: Restrict physical access to the local networks of the solution
Restrict physical access to the local networks of the solution
Mitigation: Open TraceAlertServerPLUS.exe with Zip tool to remove file JndiLookup.class in directory org/apache/
Open TraceAlertServerPLUS.exe with Zip tool to remove file JndiLookup.class in directory org/apache/logging/log4j/core/lookup/. This measure mitigates both CVE-2021-44228 and CVE-2021-45046.
Mitigation: Check file system permissions
Check file system permissions
Mitigation: Review the status of the defense in depth recommendations that apply to your specific deployment and
Review the status of the defense in depth recommendations that apply to your specific deployment and align as needed. Especially the measures on the network layer to prevent accessibility from other network segments
Mitigation: Ensure that TraceAlertServerPLUS does not run with elevated privileges
Ensure that TraceAlertServerPLUS does not run with elevated privileges
Patch: Vulnerabilities fixed on central cloud service between 2021-12-10 (CVE-2021-44228) and 2021-12-21 (C
Vulnerabilities fixed on central cloud service between 2021-12-10 (CVE-2021-44228) and 2021-12-21 (CVE-2021-45105); no user actions necessary
Mitigation: Note: EnergyIP V8.5 and V8.6 applications are not directly affected, but CAS is.
Note: EnergyIP V8.5 and V8.6 applications are not directly affected, but CAS is.
Patch: Vulnerabilities fixed for Command installations on a project basis; no user actions necessary
Vulnerabilities fixed for Command installations on a project basis; no user actions necessary
Mitigation: Note: Earlier versions of the product contained a vulnerable version of log4j, but no risk for explo
Note: Earlier versions of the product contained a vulnerable version of log4j, but no risk for exploitation could be identified.
Patch: Vulnerabilities fixed on central cloud service starting 2021-12-13; no user actions necessary
Vulnerabilities fixed on central cloud service starting 2021-12-13; no user actions necessary
Mitigation: Stop and disable autostart for maxView Storage Manager WebServer. Note: This software is not require
Stop and disable autostart for maxView Storage Manager WebServer. Note: This software is not required for the underlying RAID to work
Mitigation: Find detailed mitigation steps for both server and client installations at: https://support.sw.sieme
Find detailed mitigation steps for both server and client installations at: https://support.sw.siemens.com/en-US/knowledge- base/PL8602538
Mitigation: If, for a particular product listed in the table above, no remediation or specific mitigation is giv
If, for a particular product listed in the table above, no remediation or specific mitigation is given: Block both incoming and outgoing connections between the system and the Internet.
Mitigation: Find detailed mitigation steps at: https://support.sw.siemens.com/en- US/knowledge-base/MG618363
Find detailed mitigation steps at: https://support.sw.siemens.com/en- US/knowledge-base/MG618363
Patch: Update to V1.4.0-42 or later version
Update to V1.4.0-42 or later version
Patch: Although the Mendix runtime itself is not vulnerable to this exploit, we nevertheless recommend to u
Although the Mendix runtime itself is not vulnerable to this exploit, we nevertheless recommend to upgrade log4j-core to the latest available version if log4j-core is part of your project. This advice is regardless of the JRE/JDK version the app runs on.
Mitigation: Additional information is available at https://support.sw.siemens.com/en-US/product/1644094854/knowl
Additional information is available at https://support.sw.siemens.com/en-US/product/1644094854/knowledge- base/MG618343
Patch: Update to V1.4.11 or later version
Update to V1.4.11 or later version
Patch: Update to V4.4.1 or later version
Update to V4.4.1 or later version
Mitigation: Find detailed remediation and mitigation information at: https://support.sw.siemens.com/knowledge-ba
Find detailed remediation and mitigation information at: https://support.sw.siemens.com/knowledge-base/MG618362
Patch: Vulnerabilities fixed for Vantage installations on a project basis; no user actions necessary
Vulnerabilities fixed for Vantage installations on a project basis; no user actions necessary
Mitigation: Find detailed remediation and mitigation information at: https://support.sw.siemens.com/en-US/knowle
Find detailed remediation and mitigation information at: https://support.sw.siemens.com/en-US/knowledge-base/PL8601468
Mitigation: For Comfy and Enlighted, see also chapter Additional Information below
For Comfy and Enlighted, see also chapter Additional Information below
Mitigation: Disable ports 8080/tcp and 8443/tcp in the firewall configuration of the IPC
Disable ports 8080/tcp and 8443/tcp in the firewall configuration of the IPC
Mitigation: Find detailed remediation and mitigation information at: https://support.sw.siemens.com/en-US/knowle
Find detailed remediation and mitigation information at: https://support.sw.siemens.com/en-US/knowledge-base/PL8600700
Patch: Vulnerability CVE-2021-44228 fixed on central cloud service starting 2021-12-13; no user actions nec
Vulnerability CVE-2021-44228 fixed on central cloud service starting 2021-12-13; no user actions necessary
Mitigation: Find detailed remediation and mitigation information at: https://support.sw.siemens.com/en-US/knowle
Find detailed remediation and mitigation information at: https://support.sw.siemens.com/en-US/knowledge-base/PL8601203
Patch: Vulnerabilities fixed on central cloud service starting 2021-12-11; no user actions necessary
Vulnerabilities fixed on central cloud service starting 2021-12-11; no user actions necessary
Patch: Update to V3.0.29 or later version
Update to V3.0.29 or later version
Patch: Update to V4.70 SP9 Security Patch 1 or later version. Please contact your local Siemens representa
Update to V4.70 SP9 Security Patch 1 or later version. Please contact your local Siemens representative.
Patch: Apply the patch. Please contact your local Siemens representative.
Apply the patch. Please contact your local Siemens representative.
Patch: Update to V12.1.0.14 or later version
Update to V12.1.0.14 or later version
Patch: Vulnerabilities fixed with update on 2021-12-21; no user actions necessary
Vulnerabilities fixed with update on 2021-12-21; no user actions necessary
Patch: Update to V3.0.30 or later version
Update to V3.0.30 or later version
Patch: Update to V13.17.2 was deployed on all cRSP services on 2021-12-21; no user actions necessary
Update to V13.17.2 was deployed on all cRSP services on 2021-12-21; no user actions necessary
Patch: Follow the remediation steps documented at: https://support.sw.siemens.com/en-US/knowledge-base/PL86
Follow the remediation steps documented at: https://support.sw.siemens.com/en-US/knowledge-base/PL8602466
Patch: Vulnerabilities fixed on remote VPL server; no user actions necessary
Vulnerabilities fixed on remote VPL server; no user actions necessary
Patch: Update to V4.2.3 or later version
Update to V4.2.3 or later version
Patch: Update to V2021.1 SP2202 or later version
Update to V2021.1 SP2202 or later version
Patch: Update to VX.2.8 Update 13 or later version
Update to VX.2.8 Update 13 or later version
Patch: Update to V5.2.4 or later version
Update to V5.2.4 or later version
Mitigation: Note: If Power BI integration is disabled, it is safe to continue to assign the “Limited Engineer” r
Note: If Power BI integration is disabled, it is safe to continue to assign the “Limited Engineer” role to users.
Patch: Hitachi Energy advises users that the vulnerability is remediated in Lumada APM v6.4.0.1. Lumada APM
Hitachi Energy advises users that the vulnerability is remediated in Lumada APM v6.4.0.1. Lumada APM v6.5.0.0 and later are not affected.
Patch: According to Hitachi Energy, the “On Premise” edition of Lumada APM does not support the Power BI in
According to Hitachi Energy, the “On Premise” edition of Lumada APM does not support the Power BI integration feature. However, users can connect a subscription-based Power BI to Lumada APM.
Mitigation: Disabling the unsupported Power BI integration feature if there are users with “Limited Engineer” ro
Disabling the unsupported Power BI integration feature if there are users with “Limited Engineer” role.
Mitigation: Ensure affected equipment has no direct connections to the internet
Ensure affected equipment has no direct connections to the internet
Mitigation: Removing the any users with “Limited Engineer” role.
Removing the any users with “Limited Engineer” role.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel
Physically protect process control systems from direct access by unauthorized personnel
Mitigation: Assigning users to another role prior to using the unsupported Power BI integration feature.
Assigning users to another role prior to using the unsupported Power BI integration feature.
Mitigation: For more information, see the Hitachi Energy advisory.
For more information, see the Hitachi Energy advisory.
Mitigation: Hitachi Energy advises that process control systems should not be used for internet surfing, instant
Hitachi Energy advises that process control systems should not be used for internet surfing, instant messaging, or receiving emails. Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system.
Mitigation: Separate process control systems from other networks using a firewall system with a minimal number e
Separate process control systems from other networks using a firewall system with a minimal number exposed of ports.
Patch: Hitachi ABB Power Grids recommends users apply the update as soon as they are able. Ellipse EAM Vers
Hitachi ABB Power Grids recommends users apply the update as soon as they are able. Ellipse EAM Version 9.0.23 fixes one of the vulnerabilities, and Ellipse EAM Version 9.0.26 fixes both.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Critical systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Critical systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Mitigation: It is important to implement robust security awareness training to ensure users are able to identify
It is important to implement robust security awareness training to ensure users are able to identify common attacks or content such as phishing emails or malicious web pages.
Mitigation: Firewalls should be configured to have the minimum number of ports exposed and open ports should be
Firewalls should be configured to have the minimum number of ports exposed and open ports should be justified and documented.
Mitigation: Ensure critical applications and systems are physically protected from direct access by unauthorized
Ensure critical applications and systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall.
Mitigation: Hitachi ABB Power Grids recommends following security best practices and firewall configurations to
Hitachi ABB Power Grids recommends following security best practices and firewall configurations to help protect a process control network from attacks originating from an outside the network. Such practices include:
Mitigation: Hitachi ABB Power Grids published cybersecurity advisory PGVU-PGGA-Ellipse-202027 to give users more
Hitachi ABB Power Grids published cybersecurity advisory PGVU-PGGA-Ellipse-202027 to give users more information about this issue.
Mitigation: Update the OPC UA server to the latest version.
Update the OPC UA server to the latest version.
Mitigation: When connecting the products to the Internet, use a virtual private network (VPN, etc.) to prevent s
When connecting the products to the Internet, use a virtual private network (VPN, etc.) to prevent spoofing and sniffing.
Mitigation: Install antivirus software.
Install antivirus software.
Mitigation: Update GT SoftGOT2000: Update to 1.275M or later
Update GT SoftGOT2000: Update to 1.275M or later
Patch: Update MELSOFT GT OPC UA Client: Update to 1.03D or later
Update MELSOFT GT OPC UA Client: Update to 1.03D or later
Mitigation: Use the products within the LAN and block access from untrusted networks and hosts.
Use the products within the LAN and block access from untrusted networks and hosts.
Mitigation: Mitsubishi Electric recommends users update software
Mitsubishi Electric recommends users update software
Mitigation: Restrict physical access to computers and network equipment that use the affected products.
Restrict physical access to computers and network equipment that use the affected products.
Mitigation: (CVE-2025-39203) RTU500 series CMU Firmware version 13.4.1 – 13.4.4: Follow General Mitigation Facto
(CVE-2025-39203) RTU500 series CMU Firmware version 13.4.1 – 13.4.4: Follow General Mitigation Factors/Workarounds.
Mitigation: Apply general Mitigation Factors
Apply general Mitigation Factors
Patch: Update to version 9.8.2 or latest - Hitachi Energy recommends that customers apply the update at th
Update to version 9.8.2 or latest - Hitachi Energy recommends that customers apply the update at the earliest convenience - While reviewing the recommended immediate actions, assess the risk exposure of affected products within the operational environment and update or upgrade if necessary
Mitigation: Hitachi Energy recommends updating eSOMS to a fixed version when available.
Hitachi Energy recommends updating eSOMS to a fixed version when available.
Mitigation: For more information on this issue, see the Hitachi Energy eSOMS Security Advisory 8DBD000175.
For more information on this issue, see the Hitachi Energy eSOMS Security Advisory 8DBD000175.
Mitigation: For additional information and support, please contact your local ABB service organization. For cont
For additional information and support, please contact your local ABB service organization. For contact information, see https://new.abb.com/contact-centers or visit http://www.abb.com/cybersecurity
Mitigation: Versions 9.4.2.6, 9.5.3.2, and 9.6.1
Versions 9.4.2.6, 9.5.3.2, and 9.6.1
Mitigation: Users of the affected software unable to upgrade to one of the corrected versions should follow Rock
Users of the affected software unable to upgrade to one of the corrected versions should follow Rockwell Automation's security best practices.
Mitigation: Version 1.007
Version 1.007
Mitigation: Rockwell Automation released a product update addressing this vulnerability:
Rockwell Automation released a product update addressing this vulnerability:
Patch: Hitachi Energy recommends updating the PCM600 Update Manager to Update Manager v2.4.21218.1. This ca
Hitachi Energy recommends updating the PCM600 Update Manager to Update Manager v2.4.21218.1. This can be done by checking directly on the recommended updates in the PCM600 Update Manager or by downloading it from the Hitachi Energy website.
Mitigation: Please see Hitachi Energy advisory 8DBD000056 for additional mitigation and update information.
Please see Hitachi Energy advisory 8DBD000056 for additional mitigation and update information.
Patch: Install patch scripts to safely remove the software causing the vulnerability. In addition, general
Install patch scripts to safely remove the software causing the vulnerability. In addition, general mitigation factors are recommended. (Due to complexity of individual implementation of project, contact local account team for further information on possible remediation and mitigation strategies.)
Mitigation: Siemens has released a new version (V2.2) for SIMATIC RF160B and recommends to update to the latest
Siemens has released a new version (V2.2) for SIMATIC RF160B and recommends to update to the latest version.
Mitigation: As a general security measure, Siemens recommends protecting network access to devices with appropri
As a general security measure, Siemens recommends protecting network access to devices with appropriate mechanisms. To operate the devices in a protected IT environment, Siemens recommends configuring the environment according to Siemens' operational guidelines for industrial security and following recommendations in the product manuals.
Mitigation: Additional information on industrial security by Siemens can be found on the Siemens industrial secu
Additional information on industrial security by Siemens can be found on the Siemens industrial security webpage
Mitigation: For more information see the associated Siemens security advisory SSA-770721 in HTML and CSAF.
For more information see the associated Siemens security advisory SSA-770721 in HTML and CSAF.
Mitigation: Follow general mitigation factors/workarounds
Follow general mitigation factors/workarounds
Patch: Update to CMU Firmware version 13.7.8 or latest
Update to CMU Firmware version 13.7.8 or latest
Patch: Update to CMU Firmware version 12.7.8
Update to CMU Firmware version 12.7.8
Patch: Update to CMU Firmware version 13.8.2
Update to CMU Firmware version 13.8.2
Patch: Update to the respective series fixed versions - 12.0.15, 12.2.12, 12.4.12, 12.6.10, 12.7.7, 13.2.7,
Update to the respective series fixed versions - 12.0.15, 12.2.12, 12.4.12, 12.6.10, 12.7.7, 13.2.7, 13.4.4 (or 13.5.1)
Mitigation: For more information see the associated Hitachi Energy PSIRT security advisory 8DBD000174 Cybersecur
For more information see the associated Hitachi Energy PSIRT security advisory 8DBD000174 Cybersecurity Advisory - Reboot Vulnerability in Hitachi Energy Relion 670/650 and SAM600-IO series products located at: https://publisher.hitachienergy.com/preview?DocumentId=8DBD000174&languageCode=en&Preview=true or https://publisher.hitachienergy.com/preview?DocumentID=8DBD000174-CSAF&LanguageCode=en&DocumentPartId=&Action=Launch.
Patch: Update to version 2.2.4.6 or latest, or upgrade to version 2.2.7
Update to version 2.2.4.6 or latest, or upgrade to version 2.2.7
Patch: Update to version 2.2.5.8 or latest, or upgrade to version 2.2.7
Update to version 2.2.5.8 or latest, or upgrade to version 2.2.7
Patch: Update to version 2.2.6.4 or latest, or upgrade to version 2.2.7
Update to version 2.2.6.4 or latest, or upgrade to version 2.2.7
Mitigation: Apply general mitigation factors
Apply general mitigation factors
Patch: Update to version 2.2.1.9 or latest, or upgrade to version 2.2.7
Update to version 2.2.1.9 or latest, or upgrade to version 2.2.7
Patch: RTU500 series CMU Firmware Version 13.2.1 - 13.2.6: Update to CMU Firmware Version 13.2.7
RTU500 series CMU Firmware Version 13.2.1 - 13.2.6: Update to CMU Firmware Version 13.2.7
Mitigation: RTU500 series CMU Firmware: Do not allow process control systems direct connections to the Internet.
RTU500 series CMU Firmware: Do not allow process control systems direct connections to the Internet.
Mitigation: Hitachi Energy has released the following mitigations for CVE-2024-1531 and CVE-2024-1532:
Hitachi Energy has released the following mitigations for CVE-2024-1531 and CVE-2024-1532:
Mitigation: For more information, see Hitachi Energy's Security Advisory: Cybersecurity Advisory Multiple Vulner
For more information, see Hitachi Energy's Security Advisory: Cybersecurity Advisory Multiple Vulnerabilities in Hitachi Energy's RTU500 series Product
Mitigation: RTU500 series CMU Firmware: Portable computers and removable storage media should be carefully scann
RTU500 series CMU Firmware: Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: RTU500 series CMU Firmware: Physically protect process control systems from direct access by unautho
RTU500 series CMU Firmware: Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: RTU500 series CMU Firmware: Recommended security practices and firewall configurations can help prot
RTU500 series CMU Firmware: Recommended security practices and firewall configurations can help protect a process control network from attacks originating from outside the network including.
Mitigation: RTU500 series CMU Firmware: Process control systems should not be used for Internet surfing, instant
RTU500 series CMU Firmware: Process control systems should not be used for Internet surfing, instant messaging, or receiving emails.
Mitigation: RTU500 series CMU Firmware: Separate process control systems from other networks by means of a firew
RTU500 series CMU Firmware: Separate process control systems from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: Until the updates are made available, Hitachi Energy recommends the following general mitigation fac
Until the updates are made available, Hitachi Energy recommends the following general mitigation factors/workarounds for the products with RTU500 series CMU Firmware: Versions 12.0.1 - 12.0.14, 12.2.1 - 12.2.11, 12.4.1 - 12.4.11, 12.6.1 - 12.6.9, 13.4.1 - 13.4.4, and 13.5.1 - 13.5.3 to address the vulnerabilities CVE-2024-1531 and CVE-2024-1532:
Patch: RTU500 series CMU Firmware Version 12.7.1 - 12.7.6: Update to CMU Firmware Version 12.7.7
RTU500 series CMU Firmware Version 12.7.1 - 12.7.6: Update to CMU Firmware Version 12.7.7
Patch: Update to V2.2 or later version
Update to V2.2 or later version
Patch: Update to V2.2 or later version
Update to V2.2 or later version
Mitigation: For more information see the associated Hitachi Energy PSIRT security advisory 8DBD000220 Multiple V
For more information see the associated Hitachi Energy PSIRT security advisory 8DBD000220 Multiple Vulnerabilities in Hitachi Energy's RTU500 series Product.
Patch: Update to CMU Firmware version 13.7.7 or latest and enable secure update feature on all CMUs of an R
Update to CMU Firmware version 13.7.7 or latest and enable secure update feature on all CMUs of an RTU500.
Patch: Update to CMU Firmware version 13.5.4 or latest and enable secure update feature on all CMUs of an R
Update to CMU Firmware version 13.5.4 or latest and enable secure update feature on all CMUs of an RTU500.
Patch: Hitachi ABB Power Grids has published an advisory for eSOMS Telerik and advises users to update to e
Hitachi ABB Power Grids has published an advisory for eSOMS Telerik and advises users to update to eSOMS Version 6.3 as soon as possible.
Mitigation: Recommended security practices and firewall configurations can help protect a process control networ
Recommended security practices and firewall configurations can help protect a process control network from attacks that originate from outside the network. Such practices include ensuring applications and servers are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, are separated from other networks by means of a firewall system that has a minimal number of ports exposed, and others that must be evaluated case by case. Sensitive application servers should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: For additional information and support, contact a product provider or Hitachi ABB Power Grids servic
For additional information and support, contact a product provider or Hitachi ABB Power Grids service organization. For contact information, visit Hitachi ABB Power Grids contact-centers.
Patch: Update to V1.0 SP2 Update 3 or later version
Update to V1.0 SP2 Update 3 or later version
Mitigation: Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via m
Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via management network or a dedicated VLAN)
Mitigation: Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Acces
Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Access-Request packets from RADIUS client devices that support it
Patch: Upgrade Palo Alto Networks Virtual NGFW V11.1.4-h1. Contact customer support to receive patch and up
Upgrade Palo Alto Networks Virtual NGFW V11.1.4-h1. Contact customer support to receive patch and update information
Mitigation: Customers can resolve this issue by configuring the in-use SSH profile to contain at least one ciphe
Customers can resolve this issue by configuring the in-use SSH profile to contain at least one cipher and at least one MAC algorithm, which removes support for CHACHA20-POLY1305 and all Encrypt-then-MAC algorithms available (ciphers with -etm in the name) in PAN-OS software. See Palo Alto Networks' upstream documentation https://security.paloaltonetworks.com/CVE-2023-48795 for additional guidance.
Mitigation: For more information, please visit Hitachi Energy's advisory.
For more information, please visit Hitachi Energy's advisory.
Mitigation: Hitachi Energy recommends the following general mitigation workarounds:
Hitachi Energy recommends the following general mitigation workarounds:
Mitigation: Due to complexity of individual implementation of project, contact local account team for further in
Due to complexity of individual implementation of project, contact local account team for further information on possible upgrades.
Mitigation: Project recommended security practices and firewall configurations will help protect a process contr
Project recommended security practices and firewall configurations will help protect a process control network from attacks that originate from outside of the network. Such practices include that process control systems have no direct connections to the Internet; are physically protected from direct access by unauthorized personnel and are separated from other networks by means of a firewall system that has a required number of ports opened, security logs enabled, and others that have to be evaluated case by case. Process control systems should not be used for internet surfing, instant messaging, or receiving emails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Upon clean install, change the root password
Upon clean install, change the root password
Mitigation: If updated from previous version, remove unwanted accounts and/or change the default passwords. Refe
If updated from previous version, remove unwanted accounts and/or change the default passwords. Refer to the Secure Deployment Guidelines document as described in chapter 4.3
Patch: Hitachi Energy recommends that customers apply the update and take recommended actions at the earlie
Hitachi Energy recommends that customers apply the update and take recommended actions at the earliest convenience
Mitigation: Remove unwanted accounts and/or change the default passwords. Refer to the Secure Deployment Guideli
Remove unwanted accounts and/or change the default passwords. Refer to the Secure Deployment Guidelines document as described in chapter 4.3
Mitigation: While reviewing the recommended immediate actions, assess the risk exposure of affected products wit
While reviewing the recommended immediate actions, assess the risk exposure of affected products within the operational environment and update or upgrade if necessary
Mitigation: Hitachi Energy recommends security practices and firewall configurations to help protect process con
Hitachi Energy recommends security practices and firewall configurations to help protect process control networks from attacks that originate from outside the network. Such practices include physically protecting process control systems from direct access by unauthorized personnel, having no direct connections to the Internet, separating from other networks by means of a firewall system that has a minimal number of ports exposed, and others that must be evaluated case by case. Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: For more information see Hitachi Energy advisory 8DBD000075
For more information see Hitachi Energy advisory 8DBD000075
Mitigation: Hitachi Energy recommends users update to Versions 10.3 or later. For obtaining the update users sho
Hitachi Energy recommends users update to Versions 10.3 or later. For obtaining the update users should contact the Hitachi Energy technical support team. If users don't know who to contact, they should reach the closest Hitachi Energy sales office.
Mitigation: Recommended security practices and firewall configurations can help protect a process control networ
Recommended security practices and firewall configurations can help protect a process control network from attacks that originate from outside the network. Such practices include that process control systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system that has a minimal number of ports exposed; and others that must be evaluated case-by-case. Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Note: In DMS600, PostgreSQL is deployed and accessible only from the local host. Remote connections
Note: In DMS600, PostgreSQL is deployed and accessible only from the local host. Remote connections are not allowed by default.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000102.
For more information, see Hitachi Energy advisory 8DBD000102.
Mitigation: Hitachi Energy DMS600: Update to v4.6.
Hitachi Energy DMS600: Update to v4.6.
Patch: Update to V3.2 SP2 or later version
Update to V3.2 SP2 or later version
Patch: Update to V3.0 SP1 or later version
Update to V3.0 SP1 or later version
Mitigation: 1) CIS Microsoft Windows Desktop Benchmarks2) CIS Microsoft Windows Server Benchmarks
1) CIS Microsoft Windows Desktop Benchmarks2) CIS Microsoft Windows Server Benchmarks
Mitigation: Process control systems should not be used for Internet surfing, instant messaging, or receiving e-m
Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Mitigation: Separate from other networks by means of a firewall system that has a minimal number of ports expose
Separate from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: Hitachi Energy recommends that customers apply the update as soon as it is available. in the meantim
Hitachi Energy recommends that customers apply the update as soon as it is available. in the meantime, Hitachi Energy recommends that users follow the general mitigation factors/workarounds given below.
Mitigation: Hitachi Energy has provided the additional following security practices and firewall configurations
Hitachi Energy has provided the additional following security practices and firewall configurations can help protect a process control network from attacks that originate from outside the network:
Patch: Also, Hitachi Energy recommends following the hardening guidelines published by "The Center for Inte
Also, Hitachi Energy recommends following the hardening guidelines published by "The Center for Internet Security (CIS)" to protect the host operating system of computers that connects with MSM. This measure would then prevent the lateral movement of the attack vector into MSM via these connected devices. Some examples for Windows based computers are listed below:
Patch: MSM is not intrinsically designed and intended to be directly connected to the internet. Please disc
MSM is not intrinsically designed and intended to be directly connected to the internet. Please disconnect the device from any internet facing network, if any installation has performed the same. Hitachi Energy suggests adopting user access management and any state-of-the-art antivirus protection engines equipped with the latest signature rules on the computers that have installed and operating the MSM Client application. As an example, please use the operating system (OS) inbuilt user access management functionality, if supported, to limit the probability of unauthorized access followed by rogue commands via MSM Client application.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Do not connect directly to the Internet.
Do not connect directly to the Internet.
Mitigation: For more information, see Hitachi Energy's security advisory 8DBD000205
For more information, see Hitachi Energy's security advisory 8DBD000205
Mitigation: Refer to Recognizing and Avoiding Email Scams for more information on avoiding email scams.
Refer to Recognizing and Avoiding Email Scams for more information on avoiding email scams.
Mitigation: For additional information and support, users should contact the product provider or Hitachi Energy
For additional information and support, users should contact the product provider or Hitachi Energy service organization.
Mitigation: Do not click web links or open unsolicited attachments in email messages.
Do not click web links or open unsolicited attachments in email messages.
Patch: Please see the Hitachi Energy Retail Operations and CSB advisories for additional mitigation and upd
Please see the Hitachi Energy Retail Operations and CSB advisories for additional mitigation and update information.
Mitigation: Counterparty Settlement and Billing (CSB) v5.7.3: Upgrade to v5.7.3.1
Counterparty Settlement and Billing (CSB) v5.7.3: Upgrade to v5.7.3.1
Patch: Routinely monitor the application process log for unrecognized user sessions originating outside of
Routinely monitor the application process log for unrecognized user sessions originating outside of the Retail Operations application.
Patch: Retail Operations v5.7.3 and prior: Upgrade to v5.7.3.1
Retail Operations v5.7.3 and prior: Upgrade to v5.7.3.1
Mitigation: Harden the operating system.
Harden the operating system.
Mitigation: Refer to Avoiding Social Engineering and Phishing Attacks for more information on social engineering
Refer to Avoiding Social Engineering and Phishing Attacks for more information on social engineering attacks.
Patch: Update to V2.2.28 or later version
Update to V2.2.28 or later version
Patch: Update to V2020 SP1 or later version
Update to V2020 SP1 or later version
Patch: Update to V1.2 or later version
Update to V1.2 or later version
Patch: For PCS neo customers: Update to PCS neo V3.1 SP1 (https://support.industry.siemens.com/cs/ww/de/vie
For PCS neo customers: Update to PCS neo V3.1 SP1 (https://support.industry.siemens.com/cs/ww/de/view/109807752/)
Patch: Update to V3.1.1 or later version
Update to V3.1.1 or later version
Patch: Update to V5.2.6 or later version
Update to V5.2.6 or later version
Mitigation: Additional information on industrial security by Siemens can be found on the Siemens industrial secu
Additional information on industrial security by Siemens can be found on the Siemens industrial security webpage
Patch: Update to V2.15.0 or later version
Update to V2.15.0 or later version
Patch: For WinCC customers: contact local support
For WinCC customers: contact local support
Patch: For PCS 7 customers: Update to PCS 7 V9.1 SP1 (https://support.industry.siemens.com/cs/ww/en/view/10
For PCS 7 customers: Update to PCS 7 V9.1 SP1 (https://support.industry.siemens.com/cs/ww/en/view/109805073/)
Patch: Update to V1.1 or later version
Update to V1.1 or later version
Patch: Update to V1.0 SP3 or later version
Update to V1.0 SP3 or later version
Patch: Update to V4.1.4 or later version
Update to V4.1.4 or later version
Patch: Upgrade to V4.95 SP1 or later version SINUMERIK software can be obtained from your local Siemens acc
Upgrade to V4.95 SP1 or later version SINUMERIK software can be obtained from your local Siemens account manager
Mitigation: Siemens has identified the following specific workarounds and mitigations users can apply to reduce
Siemens has identified the following specific workarounds and mitigations users can apply to reduce risk:
Patch: Update to V1.0.7 or later version
Update to V1.0.7 or later version
Patch: Update to V3.1 or later version
Update to V3.1 or later version
Patch: Update to V3.0.22 or later version
Update to V3.0.22 or later version
Patch: Use the Edge Management System to update to V1.1.1 or later version
Use the Edge Management System to update to V1.1.1 or later version
Patch: Update to V2.3 or later version
Update to V2.3 or later version
Mitigation: For more information see the associated Siemens security advisory SSA-244969 in HTML and CSAF.
For more information see the associated Siemens security advisory SSA-244969 in HTML and CSAF.
Patch: Update to V3.3.46 or later version
Update to V3.3.46 or later version
Patch: Update to V7.1 or later version
Update to V7.1 or later version
Patch: Update to V7.1 or later version
Update to V7.1 or later version
Patch: Update to V3.0.0 or later version
Update to V3.0.0 or later version
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Patch: Update to V5.5.2 or later version
Update to V5.5.2 or later version
Mitigation: For more information see the associated Siemens security advisory SSA-244969 in HTML and CSAF.
For more information see the associated Siemens security advisory SSA-244969 in HTML and CSAF.
Patch: Update to V4.5.2 or later version
Update to V4.5.2 or later version
Mitigation: Disable performance logging and follow general mitigation strategy. Hitachi Energy recommends that c
Disable performance logging and follow general mitigation strategy. Hitachi Energy recommends that customers implement the mitigation measures as stated in this advisory and apply the update at the earliest when it is available.
Patch: Update to V2.1.4 or later version
Update to V2.1.4 or later version
Patch: Update to V3.1 SP1 or later version
Update to V3.1 SP1 or later version
Patch: Update to V3.0 or later version
Update to V3.0 or later version
Patch: Update to V2.0 or later version
Update to V2.0 or later version
Patch: Update to V1.1 or later version
Update to V1.1 or later version
Mitigation: Restrict access to Remote Access service, if used, to mitigate this issue. This service is disabled
Restrict access to Remote Access service, if used, to mitigate this issue. This service is disabled by default.
Patch: Update to V1.0 SP4 or later version
Update to V1.0 SP4 or later version
Patch: Update to V1.1 or later version
Update to V1.1 or later version
Patch: Update to V4.5.2 or later version
Update to V4.5.2 or later version
Patch: Update to V17.0 Upd 2 or later version
Update to V17.0 Upd 2 or later version
Patch: Update to V1.0 SP2
Update to V1.0 SP2
Patch: Update to V2.2.28 or later version
Update to V2.2.28 or later version
Patch: Update to V3.1 or later version
Update to V3.1 or later version
Patch: Update to V9.2 SP 1 or later version
Update to V9.2 SP 1 or later version
Mitigation: use TLS v1.3 only
use TLS v1.3 only
Patch: Update to V5.3 or later version
Update to V5.3 or later version
Patch: Update to V4.3 or later version
Update to V4.3 or later version
Patch: Update to V6.4 or later version
Update to V6.4 or later version
Patch: Update to V3.0 or later version
Update to V3.0 or later version
Mitigation: Restrict access to the command interface, if used, to mitigate this issue. This interface is disable
Restrict access to the command interface, if used, to mitigate this issue. This interface is disabled by default.
Patch: Update to V1.6 or later version
Update to V1.6 or later version
Patch: Update to V9.1 or later version
Update to V9.1 or later version
Patch: Update to V17 Update 1 or later version
Update to V17 Update 1 or later version
Mitigation: Update ROX II to V2.14.1 ( https://support.industry.siemens.com/cs/ww/en/view/109800780/) or later v
Update ROX II to V2.14.1 ( https://support.industry.siemens.com/cs/ww/en/view/109800780/) or later version
Patch: Update to V6.4 or later version
Update to V6.4 or later version
Patch: Update to V3.1 or later version
Update to V3.1 or later version
Patch: Update to V7.1 or later version
Update to V7.1 or later version
Patch: Update to V4.0 or later version
Update to V4.0 or later version
Patch: Update to V2.0 or later version
Update to V2.0 or later version
Patch: Update to V14 SP3 or later version
Update to V14 SP3 or later version
Patch: Update SIMATIC PCS neo to V3.1 or later version To obtain SIMATIC PCS neo V3.1 contact your local su
Update SIMATIC PCS neo to V3.1 or later version To obtain SIMATIC PCS neo V3.1 contact your local support.
Patch: Update to V3.3.46 or later version
Update to V3.3.46 or later version
Patch: Update to V7.5 or later version
Update to V7.5 or later version
Patch: Update to V1.6 Upd5 or later version
Update to V1.6 Upd5 or later version
Patch: Update to V7.1 or later version
Update to V7.1 or later version
Patch: Update to V2.2 or later version
Update to V2.2 or later version
Patch: Update to V2.9.3 or later version
Update to V2.9.3 or later version
Mitigation: Introduce a Web Application Firewall solution in front of the APM web interfaces with a capability o
Introduce a Web Application Firewall solution in front of the APM web interfaces with a capability of blocking XSS attack payloads in HTTP(S) requests, both plain REST (JSON/XML) as well as Excel files wrapped in REST (JSON).
Patch: Hitachi ABB Power Grids recommends users apply Ellipse APM Versions 5.3.0.2, 5.2.0.4, and 5.1.0.7 at
Hitachi ABB Power Grids recommends users apply Ellipse APM Versions 5.3.0.2, 5.2.0.4, and 5.1.0.7 at the earliest convenience. Please see the advisory on the Hitachi ABB Power Grids website for more information.
Mitigation: Limit all “Import” role API credentials and integrations to only those providing safe data. Introduc
Limit all “Import” role API credentials and integrations to only those providing safe data. Introduce filters in the source applications to ensure data safety.
Mitigation: Ensure the “Administrator” application role is only granted to fully trusted APM users who are train
Ensure the “Administrator” application role is only granted to fully trusted APM users who are trained not to import harmful data to APM (e.g., containing HTML or JavaScript).
Mitigation: Only build and run applications from trusted sources.
Only build and run applications from trusted sources.
Mitigation: Limit access to the interactive shell of the additional GNU/Linux subssytem to trusted personnel onl
Limit access to the interactive shell of the additional GNU/Linux subssytem to trusted personnel only.
Mitigation: Do not directly connect to the Internet.
Do not directly connect to the Internet.
Mitigation: RTU500 series CMU: Firmware Versions 12.6.X to Version 12.6.7
RTU500 series CMU: Firmware Versions 12.6.X to Version 12.6.7
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system. Please see Hitachi Energy advisory 8DBD000066 for further mitigation and update information.
Mitigation: RTU500 series CMU: Firmware Versions 12.4.X to Version 12.4.11 (to be released by end of January 202
RTU500 series CMU: Firmware Versions 12.4.X to Version 12.4.11 (to be released by end of January 2022)
Mitigation: Separate from other networks by means of a firewall system that has a minimal number of ports expose
Separate from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: RTU500 series CMU: Firmware Versions 13.0.X to Version 13.2.3
RTU500 series CMU: Firmware Versions 13.0.X to Version 13.2.3
Mitigation: RTU500 series CMU: Firmware Versions 13.1.X to Version 13.2.3
RTU500 series CMU: Firmware Versions 13.1.X to Version 13.2.3
Mitigation: RTU500 series CMU: Firmware Versions 13.2.X to Version 13.2.3
RTU500 series CMU: Firmware Versions 13.2.X to Version 13.2.3
Mitigation: The CAM function is disabled by default.
The CAM function is disabled by default.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: RTU500 series CMU: Firmware Versions 12.7.X to Version 12.7.2
RTU500 series CMU: Firmware Versions 12.7.X to Version 12.7.2
Mitigation: Process control systems should not be used for Internet surfing, instant messaging, or receiving ema
Process control systems should not be used for Internet surfing, instant messaging, or receiving emails.
Mitigation: As the vulnerabilities affect only the RTU500 series in which CAM function is configured and enabled
As the vulnerabilities affect only the RTU500 series in which CAM function is configured and enabled, a possible mitigation is to disable the CAM function if it is not used.
Mitigation: Hitachi's General Mitigation Factors/Workarounds: Recommended security practices and firewall config
Hitachi's General Mitigation Factors/Workarounds: Recommended security practices and firewall configurations can help protect a process control network from attacks that originate from outside the network. Such practices include that process control systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system that has a minimal number of ports exposed, and others that have to be evaluated case by case. Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system. Proper password policies and processes should be followed.
Patch: Fixed in version 9.23. Due to the complexity of individual implementation of the project, contact lo
Fixed in version 9.23. Due to the complexity of individual implementation of the project, contact local account team for further information on possible upgrades.
Mitigation: For additional information and support, contact a product provider or Hitachi ABB Power Grids servic
For additional information and support, contact a product provider or Hitachi ABB Power Grids service organization. For contact information, see Hitachi ABB Power Grids contact-centers.
Mitigation: Hitachi ABB Power Grids has published an advisory for AFS Series and advises users to update product
Hitachi ABB Power Grids has published an advisory for AFS Series and advises users to update products with available updates. The update removes the vulnerability by modifying the way the switch processes HSR frames.
Mitigation: If remote access is required, use secure methods such as virtual private networks (VPNs).
If remote access is required, use secure methods such as virtual private networks (VPNs).
Mitigation: Isolate affected products from the corporate network.
Isolate affected products from the corporate network.
Mitigation: See CERT@VDE's advisory VDE-2021-027 for more information
See CERT@VDE's advisory VDE-2021-027 for more information
Mitigation: Minimize network exposure for affected products and ensure they are not accessible via the Internet.
Minimize network exposure for affected products and ensure they are not accessible via the Internet.
Mitigation: InTouch Access Anywhere Secure Gateway 2020b (version 20.0.1) Hotfix.
InTouch Access Anywhere Secure Gateway 2020b (version 20.0.1) Hotfix.
Mitigation: InTouch Access Anywhere Secure Gateway 2020 R2 (version 20.1.0) Hotfix.
InTouch Access Anywhere Secure Gateway 2020 R2 (version 20.1.0) Hotfix.
Mitigation: Apply General Mitigation Factors/Workarounds
Apply General Mitigation Factors/Workarounds
Mitigation: RTU500 series CMU: firmware version 13.2.1.0-13.2.4.0: Update to version 13.3.1.0, 13.2.5.0, or high
RTU500 series CMU: firmware version 13.2.1.0-13.2.4.0: Update to version 13.3.1.0, 13.2.5.0, or higher.
Mitigation: RTU500 series CMU: firmware version 12.0.1.0-12.0.13.0: Update to version 12.0.14.0 or higher.
RTU500 series CMU: firmware version 12.0.1.0-12.0.13.0: Update to version 12.0.14.0 or higher.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system.
Mitigation: Separate process control systems from other networks using a firewall system with only the necessary
Separate process control systems from other networks using a firewall system with only the necessary ports open.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: RTU500 series CMU: firmware version 12.2.1.0-12.2.11.0: Update to version 12.2.12.0 or higher.
RTU500 series CMU: firmware version 12.2.1.0-12.2.11.0: Update to version 12.2.12.0 or higher.
Mitigation: RTU500 series CMU: firmware version 12.7.1.0-12.7.3.0: Update to version 12.7.4.0 or higher.
RTU500 series CMU: firmware version 12.7.1.0-12.7.3.0: Update to version 12.7.4.0 or higher.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.
Mitigation: RTU500 series CMU: firmware version 12.6.1.0-12.6.7.0: Update to version 12.6.8.0 or higher.
RTU500 series CMU: firmware version 12.6.1.0-12.6.7.0: Update to version 12.6.8.0 or higher.
Mitigation: Because the vulnerability affects only the RTU500 series with HCI Modbus TCP configured and enabled,
Because the vulnerability affects only the RTU500 series with HCI Modbus TCP configured and enabled, a possible mitigation is to disable the HCI Modbus TCP function if not used. The HCI Modbus TCP is disabled by default.
Mitigation: RTU500 series CMU: firmware version 12.4.1.0-12.4.11.0: Update to version 12.4.12.0 or higher.
RTU500 series CMU: firmware version 12.4.1.0-12.4.11.0: Update to version 12.4.12.0 or higher.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000103
For more information, see Hitachi Energy advisory 8DBD000103
Mitigation: For more information, see Hitachi Energy security advisory 8DBD000080
For more information, see Hitachi Energy security advisory 8DBD000080
Patch: Fixed in version 2.2.6.3. Update to version 2.2.6.4 or latest
Fixed in version 2.2.6.3. Update to version 2.2.6.4 or latest
Patch: Update to version 2.2.4.5 or latest
Update to version 2.2.4.5 or latest
Mitigation: Apply general mitigation factors
Apply general mitigation factors
Patch: Fixed in version 2.2.5.7. Update to version 2.2.5.8 or latest
Fixed in version 2.2.5.7. Update to version 2.2.5.8 or latest
Patch: Update to V1.0 SP2 Update 2 or later version
Update to V1.0 SP2 Update 2 or later version
Workaround: Restrict access to application webserver for trusted users only
Restrict access to application webserver for trusted users only
Patch: Update to V1.1 or later version
Update to V1.1 or later version
Mitigation: Additional information on industrial security by Siemens can be found on the Siemens industrial secu
Additional information on industrial security by Siemens can be found on the Siemens industrial security webpage
Mitigation: For more information see the associated Siemens security advisory SSA-539476 in HTML and CSAF.
For more information see the associated Siemens security advisory SSA-539476 in HTML and CSAF.
Mitigation: (CVE-2021-41991) SCALANCE SC622-2C (6GK5622-2GS00-2AC2), SCALANCE SC632-2C (6GK5632-2GS00-2AC2), SCA
(CVE-2021-41991) SCALANCE SC622-2C (6GK5622-2GS00-2AC2), SCALANCE SC632-2C (6GK5632-2GS00-2AC2), SCALANCE SC636-2C (6GK5636-2GS00-2AC2), SCALANCE SC642-2C (6GK5642-2GS00-2AC2), SCALANCE SC646-2C (6GK5646-2GS00-2AC2): Update to V2.3 or later version
Mitigation: (CVE-2021-41991) SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0), SIMATIC CP 1542SP-1 IRC (6GK7542-6VX00-0X
(CVE-2021-41991) SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0), SIMATIC CP 1542SP-1 IRC (6GK7542-6VX00-0XE0), SIMATIC CP 1543SP-1 (6GK7543-6WX00-0XE0), SIPLUS ET 200SP CP 1542SP-1 IRC TX RAIL (6AG2542-6VX00-4XE0), SIPLUS ET 200SP CP 1543SP-1 ISEC (6AG1543-6WX00-7XE0), SIPLUS ET 200SP CP 1543SP-1 ISEC TX RAIL (6AG2543-6WX00-4XE0): Update to V2.2.28 or later version
Mitigation: For more information see the associated Siemens security advisory SSA-539476 in HTML and CSAF.
For more information see the associated Siemens security advisory SSA-539476 in HTML and CSAF.
Mitigation: RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2),
RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2), SCALANCE M804PB (6GK5804-0AP00-2AA2), SCALANCE M812-1 ADSL-Router (Annex A) (6GK5812-1AA00-2AA2), SCALANCE M812-1 ADSL-Router (Annex B) (6GK5812-1BA00-2AA2), SCALANCE M816-1 ADSL-Router (Annex A) (6GK5816-1AA00-2AA2), SCALANCE M816-1 ADSL-Router (Annex B) (6GK5816-1BA00-2AA2), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2), SCALANCE M874-2 (6GK5874-2AA00-2AA2), SCALANCE M874-3 (6GK5874-3AA00-2AA2), SCALANCE M876-3 (EVDO) (6GK5876-3AA02-2BA2), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1), SCALANCE S615 (6GK5615-0AA00-2AA2): Update to V7.1 or later version
Mitigation: (CVE-2021-41991) SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0), SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0),
(CVE-2021-41991) SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0), SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0), SIMATIC CP 1243-7 LTE EU (6GK7243-7KX30-0XE0), SIMATIC CP 1243-7 LTE US (6GK7243-7SX30-0XE0), SIMATIC CP 1243-8 IRC (6GK7243-8RX30-0XE0), SIPLUS NET CP 1242-7 V2 (6AG1242-7KX31-7XE0), SIPLUS S7-1200 CP 1243-1 (6AG1243-1BX30-2AX0), SIPLUS S7-1200 CP 1243-1 RAIL (6AG2243-1BX30-1XE0): Update to V3.3.46 or later version
Mitigation: (CVE-2021-41991) SIMATIC CP 1545-1 (6GK7545-1GX00-0XE0): Update to V1.1 or later version
(CVE-2021-41991) SIMATIC CP 1545-1 (6GK7545-1GX00-0XE0): Update to V1.1 or later version
Mitigation: (CVE-2021-41991) SINEMA Remote Connect Server: Update to V3.1 or later version
(CVE-2021-41991) SINEMA Remote Connect Server: Update to V3.1 or later version
Mitigation: Siemens has identified the following specific workarounds and mitigations users can apply to reduce
Siemens has identified the following specific workarounds and mitigations users can apply to reduce risk:
Mitigation: (CVE-2021-41991) SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0), SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0),
(CVE-2021-41991) SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0), SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0), SIMATIC CP 1243-7 LTE EU (6GK7243-7KX30-0XE0), SIMATIC CP 1243-7 LTE US (6GK7243-7SX30-0XE0), SIMATIC CP 1243-8 IRC (6GK7243-8RX30-0XE0), SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0), SIMATIC CP 1543-1 (6GK7543-1AX00-0XE0), SIMATIC CP 1545-1 (6GK7545-1GX00-0XE0), SIPLUS NET CP 1242-7 V2 (6AG1242-7KX31-7XE0), SIPLUS NET CP 1543-1 (6AG1543-1AX00-2XE0), SIPLUS S7-1200 CP 1243-1 (6AG1243-1BX30-2AX0), SIPLUS S7-1200 CP 1243-1 RAIL (6AG2243-1BX30-1XE0): Only deploy certificates via TIA portal that got created with TIA portal
Mitigation: (CVE-2021-41991) SIMATIC CP 1543-1 (6GK7543-1AX00-0XE0), SIPLUS NET CP 1543-1 (6AG1543-1AX00-2XE0):
(CVE-2021-41991) SIMATIC CP 1543-1 (6GK7543-1AX00-0XE0), SIPLUS NET CP 1543-1 (6AG1543-1AX00-2XE0): Update to V3.0.22 or later version
Mitigation: As a general security measure, Siemens recommends protecting network access to devices with appropri
As a general security measure, Siemens recommends protecting network access to devices with appropriate mechanisms. To operate the devices in a protected IT environment, Siemens recommends configuring the environment according to Siemens' operational guidelines for industrial security and following recommendations in the product manuals.
Mitigation: Separate process control systems from other networks using a firewall system with only the necessary
Separate process control systems from other networks using a firewall system with only the necessary ports open.
Mitigation: Securing Microsoft Windows Server
Securing Microsoft Windows Server
Mitigation: Securing Microsoft Windows Desktop
Securing Microsoft Windows Desktop
Mitigation: Process control systems should not be used for common internet activities.
Process control systems should not be used for common internet activities.
Patch: Hitachi Energy also recommends following the hardening guidelines published by The Center for Intern
Hitachi Energy also recommends following the hardening guidelines published by The Center for Internet Security (CIS) to protect hosts connected with MSM. This measure will prevent the lateral movement of the attack vector into MSM via such connected devices.
Mitigation: Portable computers and removable storage media should be carefully scanned for malicious software be
Portable computers and removable storage media should be carefully scanned for malicious software before connecting to a control system.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000086
For more information, see Hitachi Energy advisory 8DBD000086
Patch: Upgrade to version 2.2 when available
Upgrade to version 2.2 when available
Patch: Update to version 2.1 SP6 HF1
Update to version 2.1 SP6 HF1
Patch: Update to V3.3 or later version
Update to V3.3 or later version
Patch: See Section Additional Information.
See Section Additional Information.
Patch: Update to V3.3 or later version
Update to V3.3 or later version
Patch: Update to V3.3 or later version
Update to V3.3 or later version
Patch: OPC Foundation recommends users install the OPC UA .NET Standard stack update.
OPC Foundation recommends users install the OPC UA .NET Standard stack update.
Mitigation: ICONICS and Mitsubishi Electric are releasing Critical Fix Rollup packages or patches that will incl
ICONICS and Mitsubishi Electric are releasing Critical Fix Rollup packages or patches that will include the solution to this vulnerability. GENESIS64 Versions 10.97.1 and later will not be vulnerable to this exploit.
Mitigation: Leverage OPC UA security and certificates to ensure ICONICS products only connect to trusted OPC UA
Leverage OPC UA security and certificates to ensure ICONICS products only connect to trusted OPC UA servers and clients.
Mitigation: Do not click web links or open unsolicited attachments in e-mail messages.
Do not click web links or open unsolicited attachments in e-mail messages.
Mitigation: Place control system networks and devices behind firewalls to isolate them from the business network
Place control system networks and devices behind firewalls to isolate them from the business network.
Mitigation: Mitsubishi Electric provides information and useful links related to its security updates its compan
Mitsubishi Electric provides information and useful links related to its security updates its company website.
Mitigation: ICONICS provides information and useful links related to its security updates at its company website
ICONICS provides information and useful links related to its security updates at its company website.
Mitigation: Install the applicable Critical Fixes Rollup, if available.
Install the applicable Critical Fixes Rollup, if available.
Mitigation: Minimize network exposure for all control system devices. Control system devices should not directly
Minimize network exposure for all control system devices. Control system devices should not directly face the Internet.
Mitigation: Hitachi Energy released the following recommended immediate actions:
Hitachi Energy released the following recommended immediate actions:
Patch: For SYS600 9.x: Update to version SYS600 9.4 FP2 Hotfix 5 or up-grade to at least SYS600 version 1
For SYS600 9.x: Update to version SYS600 9.4 FP2 Hotfix 5 or up-grade to at least SYS600 version 10.4.1. A requirement to install SYS600 9.4 FP2 Hotfix 5 is to have at least the SYS600 9.4 FP2 Hotfix 4 installed.
Mitigation: For more information, see Hitachi Energy's Cybersecurity Advisory.
For more information, see Hitachi Energy's Cybersecurity Advisory.
Patch: For SYS600 10.x: Update to at least SYS600 version 10.4.1 Or apply general mitigation factors from
For SYS600 10.x: Update to at least SYS600 version 10.4.1 Or apply general mitigation factors from Hitachi Energy.
Mitigation: Follow General Mitigation Factors
Follow General Mitigation Factors
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Do not directly connect to the Internet.
Do not directly connect to the Internet.
Mitigation: Process control systems should not be used for Internet surfing, instant messaging, or receiving e-m
Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Mitigation: Separate from other networks by means of a firewall system that has a minimal number of ports expose
Separate from other networks by means of a firewall system that has a minimal number of ports exposed.
Patch: RTU500 series CMU Firmware Version 13.2.1: Upgrade to the latest RTU500 series CMU Firmware as of Ve
RTU500 series CMU Firmware Version 13.2.1: Upgrade to the latest RTU500 series CMU Firmware as of Version 13.2.3. See below for the current mitigation strategy.
Mitigation: Please see Hitachi Energy advisory 8DBD000064 for additional mitigation and update information.
Please see Hitachi Energy advisory 8DBD000064 for additional mitigation and update information.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Patch: RTU500 series CMU Firmware Version 12.0.1 - 12.0.13: Update to RTU500 series CMU Firmware Version 12
RTU500 series CMU Firmware Version 12.0.1 - 12.0.13: Update to RTU500 series CMU Firmware Version 12.0.14 (to be released by end-of-February 2022). See below for the current mitigation strategy.
Patch: RTU500 series CMU Firmware Version 12.2.1 - 12.2.10: Update to RTU500 series CMU Firmware as of Vers
RTU500 series CMU Firmware Version 12.2.1 - 12.2.10: Update to RTU500 series CMU Firmware as of Version 12.2.11
Patch: RTU500 series CMU Firmware Version 12.6.1 - 12.6.6: Update to RTU500 series CMU firmware as of Versi
RTU500 series CMU Firmware Version 12.6.1 - 12.6.6: Update to RTU500 series CMU firmware as of Version 12.6.7. See below for the current mitigation strategy.
Patch: RTU500 series CMU Firmware Version 12.7.1: Update to RTU500 series CMU Firmware as of Version 12.7.2
RTU500 series CMU Firmware Version 12.7.1: Update to RTU500 series CMU Firmware as of Version 12.7.2
Patch: RTU500 series CMU Firmware Version 13.1.1 - 13.1.2: Upgrade to the latest RTU500 series CMU Firmware
RTU500 series CMU Firmware Version 13.1.1 - 13.1.2: Upgrade to the latest RTU500 series CMU Firmware as of Version 13.2.3. See below for the current mitigation strategy.
Patch: RTU500 series CMU Firmware Version 13.0.1 - 13.0.2: Upgrade to the latest RTU500 series CMU Firmware
RTU500 series CMU Firmware Version 13.0.1 - 13.0.2: Upgrade to the latest RTU500 series CMU Firmware as of Version 13.2.3. See below for the current mitigation strategy.
Patch: RTU500 series CMU Firmware Version 11.*: This product version is end-of-life (EOL). Upgrade to a non
RTU500 series CMU Firmware Version 11.*: This product version is end-of-life (EOL). Upgrade to a non-affected support version. See below for the current mitigation strategy.
Patch: RTU500 series CMU Firmware Version 12.4.1 - 12.4.10: Update to RTU500 CMU Firmware as of Version 12.
RTU500 series CMU Firmware Version 12.4.1 - 12.4.10: Update to RTU500 CMU Firmware as of Version 12.4.11 (to be released by end-of-January 2022). See below for the current mitigation strategy.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Please see Hitachi Energy advisory 8DBD000077 for additional mitigation and updated information.
Please see Hitachi Energy advisory 8DBD000077 for additional mitigation and updated information.
Mitigation: Do not directly connect to the Internet.
Do not directly connect to the Internet.
Mitigation: Hitachi Energy recommends users update to e-mesh: EMS 1.0.1 or later.
Hitachi Energy recommends users update to e-mesh: EMS 1.0.1 or later.
Mitigation: Separate from other networks by means of a firewall system that has a minimal number of ports expose
Separate from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: For additional information and access to updated firmware, please contact the Hitachi Energy service
For additional information and access to updated firmware, please contact the Hitachi Energy service organization.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Patch: Upgrade PowerManage to Version 4.10
Upgrade PowerManage to Version 4.10
Patch: Remove the JndiLookup class from the classpath. Detailed instructions are available at https://suppo
Remove the JndiLookup class from the classpath. Detailed instructions are available at https://support.industry.siemens.com/cs/ww/en/view/109805562/
Patch: Update to V5.1 QU1 or later version
Update to V5.1 QU1 or later version
Patch: Update to V5.2.4 or later version
Update to V5.2.4 or later version
Mitigation: Note: EnergyIP V8.5 and V8.6 applications are not directly affected, but CAS is.
Note: EnergyIP V8.5 and V8.6 applications are not directly affected, but CAS is.
Mitigation: Johnson Controls recommends upgrading exacq Enterprise Manager to Version 21.12.1 or apply manual mi
Johnson Controls recommends upgrading exacq Enterprise Manager to Version 21.12.1 or apply manual mitigation steps (available upon request).
Mitigation: Further ICS security notices and product security guidance are located at Johnson Controls product s
Further ICS security notices and product security guidance are located at Johnson Controls product security website.
Mitigation: Refer to the exacq Hardening Guide for guidance on isolating exacqVision NVRs and Enterprise Manager
Refer to the exacq Hardening Guide for guidance on isolating exacqVision NVRs and Enterprise Manager from public facing networks to reduce network exposure to attacks.
Mitigation: For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI
For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI-PSA-2021-24 v1
Mitigation: For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI
For more detailed mitigation instructions, please see Johnson Controls Product Security Advisory JCI-PSA-2022-01 v1
Mitigation: Hitachi Energy recommends that customers follow the “Remote Terminal Units Security Deployment Guide
Hitachi Energy recommends that customers follow the “Remote Terminal Units Security Deployment Guideline”, as well as to apply mitigation as described in the Mitigation Factors/Workarounds Section.
Patch: Update to RTU500 Scripting interface version 1.2.1
Update to RTU500 Scripting interface version 1.2.1
Patch: Relion 650 series Version 1.1: Planned
Relion 650 series Version 1.1: Planned
Mitigation: Relion 670 series Version 2.2.3: Fixed in revision 670 2.2.3.2
Relion 670 series Version 2.2.3: Fixed in revision 670 2.2.3.2
Mitigation: For RTU500 series version of release 11 and older, migration to latest release 12 is recommended.
For RTU500 series version of release 11 and older, migration to latest release 12 is recommended.
Mitigation: Recommended security practices and firewall configurations can help protect a process control networ
Recommended security practices and firewall configurations can help protect a process control network from attacks originating from outside the network. Such practices include process control systems that are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall system with a minimal number of ports exposed. Other systems would be evaluated case by case. Process control systems should not be used for Internet surfing, instant messaging, or receiving emails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: RTU500 CMU firmware release 12.0.14.0 (planned)
RTU500 CMU firmware release 12.0.14.0 (planned)
Mitigation: PWC600 Version 1.0.1.4
PWC600 Version 1.0.1.4
Mitigation: For REB500 7.3, 7.4, and 7.5, it is recommended to migrate to the REB500 7.6 Version 7.60.19 or late
For REB500 7.3, 7.4, and 7.5, it is recommended to migrate to the REB500 7.6 Version 7.60.19 or later.
Patch: Relion 650 series Version 1.3: Fixed in revision 650 1.3.0.7
Relion 650 series Version 1.3: Fixed in revision 650 1.3.0.7
Mitigation: Relion 670, 650, and SAM600-IO
Relion 670, 650, and SAM600-IO
Mitigation: FOX615 TEGO1 Version R2A16 and later
FOX615 TEGO1 Version R2A16 and later
Mitigation: Relion 670/650 series Version 2.2.0: Fixed in revision 670 2.2.0.13
Relion 670/650 series Version 2.2.0: Fixed in revision 670 2.2.0.13
Mitigation: More information on recommended practices can be found in the cybersecurity deployment guidelines fo
More information on recommended practices can be found in the cybersecurity deployment guidelines for each product version.
Mitigation: Relion 670 series Version 2.0: Planned
Relion 670 series Version 2.0: Planned
Mitigation: REB500
REB500
Mitigation: RTU500 CMU firmware release 12.6.1.0
RTU500 CMU firmware release 12.6.1.0
Mitigation: RTU500 CMU firmware release 12.4.10.0 (planned)
RTU500 CMU firmware release 12.4.10.0 (planned)
Mitigation: Not connecting the affected products to any station network through the LAN port (optical or RJ45) s
Not connecting the affected products to any station network through the LAN port (optical or RJ45) should make above attack physically impossible. The functionality of the system would have to be maintained by giving switching commands through hardwired binary inputs. This vulnerability affects only products with IEC 61850 interfaces.
Mitigation: Hitachi ABB Power Grids recommends users apply relevant updates at their earliest convenience. Pleas
Hitachi ABB Power Grids recommends users apply relevant updates at their earliest convenience. Please contact Hitachi ABB Power Grids to acquire firmware on a specific product version. Hitachi ABB Power Grids has created these new versions to address vulnerability:
Mitigation: GMS600 Version 1.3.1
GMS600 Version 1.3.1
Mitigation: Relion 670 series Version 1.2.3: Fixed in revision 670 1.2.3.20
Relion 670 series Version 1.2.3: Fixed in revision 670 1.2.3.20
Mitigation: Relion 670 series version 2.0: Fixed in revision 670 2.0.0.13
Relion 670 series version 2.0: Fixed in revision 670 2.0.0.13
Mitigation: RTU500
RTU500
Mitigation: Relion 670 series Version 2.2.2: Fixed in revision 670 2.2.2.3
Relion 670 series Version 2.2.2: Fixed in revision 670 2.2.2.3
Mitigation: Relion 670 series Version 2.1: Planned
Relion 670 series Version 2.1: Planned
Mitigation: PWC600 Version 1.1.0.1
PWC600 Version 1.1.0.1
Mitigation: PWC600
PWC600
Mitigation: MSM Version 2.1.0+ (All older versions might be affected)
MSM Version 2.1.0+ (All older versions might be affected)
Mitigation: FOX615 (TEGO1)
FOX615 (TEGO1)
Mitigation: Relion 670 series Version 1.1: Please follow recommendation as listed in the mitigation factor secti
Relion 670 series Version 1.1: Please follow recommendation as listed in the mitigation factor section or upgrade to the latest product version. For upgrades, please contact Hitachi ABB Power Grids.
Mitigation: RTU500 CMU firmware release 12.2.11.0 (planned)
RTU500 CMU firmware release 12.2.11.0 (planned)
Mitigation: Relion 670/650/SAM600-IO series Version 2.2.1: Fixed in revision 670 2.2.1.6
Relion 670/650/SAM600-IO series Version 2.2.1: Fixed in revision 670 2.2.1.6
Mitigation: GMS600
GMS600
Mitigation: REB500 8.2 Version 8.2.0.5
REB500 8.2 Version 8.2.0.5
Mitigation: REB500 8.3 Version 8.3.1.0
REB500 8.3 Version 8.3.1.0
Patch: Relion 650 series Version 1.2: Please follow recommendation as listed in the mitigation factor secti
Relion 650 series Version 1.2: Please follow recommendation as listed in the mitigation factor section or upgrade to product Version 1.3. For upgrades, please contact Hitachi ABB Power Grids.
Mitigation: REB500 7.6 Version 7.60.19
REB500 7.6 Version 7.60.19
Mitigation: MSM
MSM
Mitigation: Hitachi Energy has provided the additional following security practices and firewall configurations
Hitachi Energy has provided the additional following security practices and firewall configurations can help protect a process control network from attacks that originate from outside the network:
Mitigation: Do not connect directly to the Internet.
Do not connect directly to the Internet.
Mitigation: For more information, see Hitachi Energy's security advisory 8DBD000147
For more information, see Hitachi Energy's security advisory 8DBD000147
Mitigation: Separate from other networks by means of a firewall system that has a minimal number of ports expose
Separate from other networks by means of a firewall system that has a minimal number of ports exposed.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: Hitachi Energy has identified the following specific workarounds and mitigations users can apply to
Hitachi Energy has identified the following specific workarounds and mitigations users can apply to reduce risk:
Mitigation: For more details, refer to the "Configuration Guide" document for the respective TRO600 series route
For more details, refer to the "Configuration Guide" document for the respective TRO600 series router version.
Mitigation: Process control systems should not be used for Internet surfing, instant messaging, or receiving e-m
Process control systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Patch: (CVE-2024-41156) Hitachi Energy TRO600 series firmware versions from 9.0.1.0 to 9.2.0.0 (Configurati
(CVE-2024-41156) Hitachi Energy TRO600 series firmware versions from 9.0.1.0 to 9.2.0.0 (Configuration utility): Update to version 9.2.0.5
Patch: Update to version 2.2.3.7 or latest
Update to version 2.2.3.7 or latest
Patch: Upgrade to version 1.3.2
Upgrade to version 1.3.2
Patch: Update to version 2.2.5.6 or latest
Update to version 2.2.5.6 or latest
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V2022 SP1 or later version
Update to V2022 SP1 or later version
Patch: Update to V6.0 or later version
Update to V6.0 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V4.7 or later version
Update to V4.7 or later version
Mitigation: If possible, avoid the use of RSA based certificates in TLS communication and use ECC based certific
If possible, avoid the use of RSA based certificates in TLS communication and use ECC based certificates instead
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V2.9.7 or later version
Update to V2.9.7 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V30.1.0 or later version
Update to V30.1.0 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Mitigation: In the context of SIMATIC PCS neo, update to SIMATIC PCS neo V4.1 or later version
In the context of SIMATIC PCS neo, update to SIMATIC PCS neo V4.1 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Mitigation: As a mitigation for vulnerable versions: disable the web server
As a mitigation for vulnerable versions: disable the web server
Patch: Update to V21.9.7 or later version
Update to V21.9.7 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V2.2 or later version
Update to V2.2 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V3.3.19 or later version
Update to V3.3.19 or later version
Patch: Update to V30.1.0 or later version
Update to V30.1.0 or later version
Patch: Update to V9.2 SP2 Upd1 or later version
Update to V9.2 SP2 Upd1 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V3.0.3 or later version
Update to V3.0.3 or later version
Patch: Update to V3.0.3 or later version
Update to V3.0.3 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V3.2.19 or later version
Update to V3.2.19 or later version
Patch: Update to V2.9.7 or later version
Update to V2.9.7 or later version
Patch: Update to V21.9.7 or later version
Update to V21.9.7 or later version
Patch: Update to version 2.2.2.6 or latest
Update to version 2.2.2.6 or latest
Patch: Update to version 2.2.1.9 or latest
Update to version 2.2.1.9 or latest
Patch: Update to version 2.2.4.4 or latest
Update to version 2.2.4.4 or latest
Mitigation: Apply General Mitigation Factors
Apply General Mitigation Factors
Mitigation: For more information, see Hitachi Energy advisories 8DBD000155.
For more information, see Hitachi Energy advisories 8DBD000155.
Mitigation: FOXMAN-UN: Version R11A, this is an end-of-life version thus no fix will be provided. Apply general
FOXMAN-UN: Version R11A, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: UNEM: Version R11B, this is an end-of-life version thus no fix will be provided. Apply general mitig
UNEM: Version R11B, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: Avoid directly connecting control systems to the Internet.
Avoid directly connecting control systems to the Internet.
Patch: UNEM: Version R15B, update to UNEM R16B when released or apply general mitigation factors.
UNEM: Version R15B, update to UNEM R16B when released or apply general mitigation factors.
Mitigation: UNEM: Version R11A, this is an end-of-life version thus no fix will be provided. Apply general mitig
UNEM: Version R11A, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Patch: Recommended Mitigations for the following FOXMAN-UN and UNEM products:
Recommended Mitigations for the following FOXMAN-UN and UNEM products:
Patch: FOXMAN-UN: Version R15B, update to FOXMAN-UN R16B when released or apply general mitigation factors.
FOXMAN-UN: Version R15B, update to FOXMAN-UN R16B when released or apply general mitigation factors.
Mitigation: Hitachi Energy recommends the following general mitigation factors and security practices:
Hitachi Energy recommends the following general mitigation factors and security practices:
Mitigation: Configure firewalls to protect process control networks from attacks originating from outside the ne
Configure firewalls to protect process control networks from attacks originating from outside the network.
Mitigation: UNEM: Version R10C, this is an end-of-life version thus no fix will be provided. Apply general mitig
UNEM: Version R10C, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: FOXMAN-UN: Version R15A, this is an end-of-life version thus no fix will be provided. Apply general
FOXMAN-UN: Version R15A, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: FOXMAN-UN: Version R10C, this is an end-of-life version thus no fix will be provided. Apply general
FOXMAN-UN: Version R10C, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Mitigation: UNEM: Version R9C, this is an end-of-life version thus no fix will be provided. Apply general mitiga
UNEM: Version R9C, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: FOXMAN-UN: Version R14A, this is an end-of-life version thus no fix will be provided. Apply general
FOXMAN-UN: Version R14A, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: Separate process control networks from other networks using a firewall system with a minimal number
Separate process control networks from other networks using a firewall system with a minimal number of exposed ports.
Patch: UNEM: Version R16A, update to UNEM R16B when released or apply general mitigation factors.
UNEM: Version R16A, update to UNEM R16B when released or apply general mitigation factors.
Mitigation: Enforce proper password policies and processes.
Enforce proper password policies and processes.
Mitigation: UNEM: Version R15A, this is an end-of-life version thus no fix will be provided. Apply general mitig
UNEM: Version R15A, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: FOXMAN-UN: Version R14B, this is an end-of-life version thus no fix will be provided. Apply general
FOXMAN-UN: Version R14B, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: UNEM: Version R14B, this is an end-of-life version thus no fix will be provided. Apply general mitig
UNEM: Version R14B, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: FOXMAN-UN: Version R11B, this is an end-of-life version thus no fix will be provided. Apply general
FOXMAN-UN: Version R11B, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: UNEM: Version R14A, this is an end-of-life version thus no fix will be provided. Apply general mitig
UNEM: Version R14A, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system.
Patch: FOXMAN-UN: Version R16A, update to FOXMAN-UN R16B when released or apply general mitigation factors.
FOXMAN-UN: Version R16A, update to FOXMAN-UN R16B when released or apply general mitigation factors.
Mitigation: FOXMAN-UN: Version R9C, this is an end-of-life version thus no fix will be provided. Apply general m
FOXMAN-UN: Version R9C, this is an end-of-life version thus no fix will be provided. Apply general mitigation factors.
Mitigation: Process control systems should not be used for Internet surfing, instant messaging, or receiving ema
Process control systems should not be used for Internet surfing, instant messaging, or receiving emails.
Mitigation: For more information, see Hitachi Energy advisories 8DBD000166.
For more information, see Hitachi Energy advisories 8DBD000166.
Patch: Update to V2.2 or later version
Update to V2.2 or later version
Patch: Update to V1.0.3.1 or later version
Update to V1.0.3.1 or later version
Patch: AFS660/665S, AFS660/665C, AFS670v2: Apply mitigation strategy as described in General Mitigation Fac
AFS660/665S, AFS660/665C, AFS670v2: Apply mitigation strategy as described in General Mitigation Factors Section or update to upcoming 7.1.08 when available.
Patch: Do not use process control systems for internet surfing, instant messaging, or receiving emails.
Do not use process control systems for internet surfing, instant messaging, or receiving emails.
Patch: Hitachi Energy also recommends general mitigations:
Hitachi Energy also recommends general mitigations:
Patch: Scan portable computers and removable storage media for malware prior connection to a control system
Scan portable computers and removable storage media for malware prior connection to a control system.
Patch: AFS670/675, AFR67x: Apply mitigation strategy as described in General Mitigation Factors Section or
AFS670/675, AFR67x: Apply mitigation strategy as described in General Mitigation Factors Section or update to 9.1.08.
Patch: AFS65x: EoL product - only mitigation available, no remediation expected. Apply mitigation strategy
AFS65x: EoL product - only mitigation available, no remediation expected. Apply mitigation strategy as described in General Mitigation Factors Section.
Patch: Recommended security practices and firewall configurations can help protect a process control networ
Recommended security practices and firewall configurations can help protect a process control network from attacks originating from outside the network.
Patch: Ensure process control systems have no direct connections to the internet and are separated from oth
Ensure process control systems have no direct connections to the internet and are separated from other networks by a firewall system with a minimal number of exposed ports.
Patch: Physically protect process control systems from direct access by unauthorized personnel.
Physically protect process control systems from direct access by unauthorized personnel.
Patch: For more information, see Hitachi Energy�s Security Advisory: 8DBD000149.
For more information, see Hitachi Energy�s Security Advisory: 8DBD000149.
Patch: Hitachi Energy has released the following mitigations/fixes:
Hitachi Energy has released the following mitigations/fixes:
Patch: AFF660/665: Apply mitigation strategy as described in General Mitigation Factors Section or update t
AFF660/665: Apply mitigation strategy as described in General Mitigation Factors Section or update to upcoming release.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000134.
For more information, see Hitachi Energy advisory 8DBD000134.
Patch: Update to V2.0 or later version
Update to V2.0 or later version
Patch: Update to XMC20 R16B Revision D, version (cent2_r16b04_07, co5ne_r16b04_07) and apply general mitiga
Update to XMC20 R16B Revision D, version (cent2_r16b04_07, co5ne_r16b04_07) and apply general mitigation factors. (Hitachi Energy recommends that customers apply the update at the earliest convenience)
Patch: Recommended to update to XMC20 R16B Revision D, version (cent2_r16b04_07, co5ne_r16b04_07) and apply
Recommended to update to XMC20 R16B Revision D, version (cent2_r16b04_07, co5ne_r16b04_07) and apply general mitigation factors.
Patch: Update to XMC20 R16B Revision D, version (cent2_r16b04_07, co5ne_r16b04_07) and apply general mitiga
Update to XMC20 R16B Revision D, version (cent2_r16b04_07, co5ne_r16b04_07) and apply general mitigation factors. (Hitachi Energy recommends that customers apply the update at the earliest convenience)
Patch: Recommended to update to XMC20 R16B Revision D, version (cent2_r16b04_07, co5ne_r16b04_07) and apply
Recommended to update to XMC20 R16B Revision D, version (cent2_r16b04_07, co5ne_r16b04_07) and apply general mitigation factors.
Patch: SYS600 10.x update to at least SYS600 version 10.2 or apply general mitigation factors.
SYS600 10.x update to at least SYS600 version 10.2 or apply general mitigation factors.
Patch: Carefully scan portable computers and removable storage media for malware before connection to a con
Carefully scan portable computers and removable storage media for malware before connection to a control system.
Patch: For more information, see Hitachi Energy cybersecurity advisory 8DBD000142.
For more information, see Hitachi Energy cybersecurity advisory 8DBD000142.
Patch: Recommended security practices and firewall configurations can help protect a process control networ
Recommended security practices and firewall configurations can help protect a process control network from attacks originating from outside the network.
Patch: Hitachi Energy has released the following mitigations/fixes:
Hitachi Energy has released the following mitigations/fixes:
Patch: Ensure proper password policies and processes are followed.
Ensure proper password policies and processes are followed.
Patch: Hitachi Energy recommends general mitigation factors and workarounds:
Hitachi Energy recommends general mitigation factors and workarounds:
Patch: Hitachi Energy recommends following the cybersecurity deployment guideline as follows: 1MRK511518 Mi
Hitachi Energy recommends following the cybersecurity deployment guideline as follows: 1MRK511518 MicroSCADA X Cyber Security Deployment Guideline.
Patch: Ensure process control systems have no direct connections to the internet, are separated from other
Ensure process control systems have no direct connections to the internet, are separated from other networks by means of a firewall system that has a minimal number of ports exposed, and other practices that must be evaluated case by case.
Patch: Keep process control systems physically protected from direct access by unauthorized personnel,
Keep process control systems physically protected from direct access by unauthorized personnel,
Patch: SYS600 9.x: upgrade to at least SYS600 version 10.2 or apply general mitigation factors.
SYS600 9.x: upgrade to at least SYS600 version 10.2 or apply general mitigation factors.
Patch: Avoid using process control systems for internet surfing, instant messaging, or receiving emails.
Avoid using process control systems for internet surfing, instant messaging, or receiving emails.
Patch: Update to RTU500 series CMU Firmware version 12.4.12.0 or higher.
Update to RTU500 series CMU Firmware version 12.4.12.0 or higher.
Patch: Update to RTU500 series CMU Firmware version 12.7.4.0 or higher.
Update to RTU500 series CMU Firmware version 12.7.4.0 or higher.
Patch: Update to RTU500 series CMU Firmware version 13.3.2.0 or higher.
Update to RTU500 series CMU Firmware version 13.3.2.0 or higher.
Patch: Update to RTU500 series CMU Firmware version 13.2.5.0 or higher.
Update to RTU500 series CMU Firmware version 13.2.5.0 or higher.
Patch: Update to RTU500 series CMU Firmware version 12.2.12.0 or higher.
Update to RTU500 series CMU Firmware version 12.2.12.0 or higher.
Patch: Update to RTU500 series CMU Firmware version 12.6.8.0 or higher.
Update to RTU500 series CMU Firmware version 12.6.8.0 or higher.
Patch: Update to RTU500 series CMU Firmware version 12.0.14.0 or higher.
Update to RTU500 series CMU Firmware version 12.0.14.0 or higher.
Mitigation: Users should see Hitachi Energy advisory 8DBD000111 for additional mitigation and update information
Users should see Hitachi Energy advisory 8DBD000111 for additional mitigation and update information.
Patch: Update to version 2.2.4.4 or latest
Update to version 2.2.4.4 or latest
Patch: Update to version 2.2.3.7 or latest
Update to version 2.2.3.7 or latest
Patch: Update to version 2.0.0.14 or latest
Update to version 2.0.0.14 or latest
Patch: Update to version 2.2.2.6 or latest
Update to version 2.2.2.6 or latest
Patch: Update to version 2.2.5.6 or latest
Update to version 2.2.5.6 or latest
Patch: Update to version 1.2.3.23 or latest
Update to version 1.2.3.23 or latest
Mitigation: Update to version 2.2.1.9 or latest
Update to version 2.2.1.9 or latest
Patch: Update to version 2.1.0.6 or latest
Update to version 2.1.0.6 or latest
Mitigation: Follow general mitigation factors
Follow general mitigation factors
Mitigation: Ensuring critical applications and systems are physically protected from direct access by unauthoriz
Ensuring critical applications and systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before they a
Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Mitigation: Critical systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Critical systems should not be used for Internet surfing, instant messaging, or receiving e-mails.
Mitigation: It is important to implement robust security awareness training to ensure users can identify common
It is important to implement robust security awareness training to ensure users can identify common attacks or content such as phishing emails or malicious webpages.
Mitigation: Firewalls should be configured to have the minimum number of ports exposed and open ports should be
Firewalls should be configured to have the minimum number of ports exposed and open ports should be justified and documented.
Mitigation: For more information on this issue, see the Hitachi ABB Power Grid Security Advisory.
For more information on this issue, see the Hitachi ABB Power Grid Security Advisory.
Mitigation: Hitachi ABB Power Grids recommends users update to Version 6.3.1 or later.
Hitachi ABB Power Grids recommends users update to Version 6.3.1 or later.
Mitigation: Hitachi ABB Power Grids also recommends implementing security best practices and firewall configurat
Hitachi ABB Power Grids also recommends implementing security best practices and firewall configurations, which help protect a process control network from attacks that originate from outside the network.
Patch: For more information, see Hitachi Energy cybersecurity advisory 8DBD000146 at https://publisher.hita
For more information, see Hitachi Energy cybersecurity advisory 8DBD000146 at https://publisher.hitachienergy.com/preview?DocumentID=8DBD000146&LanguageCode=en .
Mitigation: Apply General Mitigation Factors
Apply General Mitigation Factors
Patch: Update to version 2.2.4.4 or latest
Update to version 2.2.4.4 or latest
Patch: Update to version 2.2.1.9 or latest
Update to version 2.2.1.9 or latest
Patch: Update to version 2.2.3.7 or latest
Update to version 2.2.3.7 or latest
Patch: Update to version 2.2.2.6 or latest
Update to version 2.2.2.6 or latest
Patch: Update to version 2.2.5.6 or latest
Update to version 2.2.5.6 or latest
Mitigation: Hitachi Energy recommends implementing security practices and firewall configurations to help protec
Hitachi Energy recommends implementing security practices and firewall configurations to help protect process control networks from external attacks. Such practices include ensuring that process control systems are physically protected from unauthorized access, have no direct Internet connections, and are separated from other networks by a firewall system that minimizes exposed ports, and any additional ports should be evaluated on a case-by-case basis. Process control systems should not be used for web browsing, instant messaging, or email. Portable computers and removable storage media should be thoroughly scanned for malware before being connected to a control system. Organizations should enforce proper password policies and procedures.
Mitigation: The default RADIUS configuration is not vulnerable. However, if the RADIUS Server Message Authentica
The default RADIUS configuration is not vulnerable. However, if the RADIUS Server Message Authenticator option is disabled, the product becomes vulnerable.We advise keeping this parameter in its default (enabled) state.This parameter can be configured via CLI and SNMP:MCSESM*, MCSESP* CLI: radius server auth modify <index> msgauth MIB: hm2AgentRadiusServerMsgAuth
Mitigation: The default RADIUS configuration is not vulnerable. However, if the RADIUS Server Message Authentica
The default RADIUS configuration is not vulnerable. However, if the RADIUS Server Message Authenticator option is disabled, the product becomes vulnerable.We advise keeping this parameter in its default (enabled) state.This parameter can be configured via CLI and SNMP:MCSESR* CLI: radius server auth modify <index> msgauth MIB: hm2AgentRadiusServerMsgAuth
Mitigation: The default RADIUS configuration is not vulnerable. However, if the RADIUS Server Message Authentica
The default RADIUS configuration is not vulnerable. However, if the RADIUS Server Message Authenticator option is disabled, the product becomes vulnerable.We advise keeping this parameter in its default (enabled) state.This parameter can be configured via CLI and SNMP:TCSESM* CLI: radius server msgauthMIB: hmAgentRadiusServerMsgAuth
Patch: Update to V2.50 or later version
Update to V2.50 or later version
Patch: Update to V16.51 or later version
Update to V16.51 or later version
Patch: Update to V2.70 or later version
Update to V2.70 or later version
Patch: Update to V9.83 or later version
Update to V9.83 or later version
Patch: Update to V6.20 or later version
Update to V6.20 or later version
Patch: Update to V2.83 or later version
Update to V2.83 or later version
Patch: Update to V2.20.0 or later version
Update to V2.20.0 or later version
Patch: Update to V10.0 or later version
Update to V10.0 or later version
Mitigation: Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via m
Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via management network or a dedicated VLAN)
Mitigation: Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Acces
Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Access-Request packets from RADIUS client devices that support it
Patch: Update to V4.22 or later version
Update to V4.22 or later version
Patch: Update to V9.68 or later version
Update to V9.68 or later version
Patch: Update to V8.90 or later V8.xx version
Update to V8.90 or later V8.xx version
Mitigation: Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Acces
Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Access-Request packets from RADIUS client devices that support it
Mitigation: Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via m
Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via management network or a dedicated VLAN)
Patch: Update to V5.6 or later version
Update to V5.6 or later version
Patch: Update to V4.6 or later version
Update to V4.6 or later version
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Patch: Update to V4.3.11 or later version
Update to V4.3.11 or later version
Patch: Update to V8.2 or later version
Update to V8.2 or later version
Patch: Update to V3.2 or later version
Update to V3.2 or later version
Patch: Update to V5.10.0 or later version
Update to V5.10.0 or later version
Patch: Update to V3.2 or later version
Update to V3.2 or later version
Patch: Update to V4.3.11 or later version
Update to V4.3.11 or later version
Patch: Update to V1.0 SP2 Update 4 or later version
Update to V1.0 SP2 Update 4 or later version
Patch: Update to V4.1.9 or later version
Update to V4.1.9 or later version
Patch: Update to V1.3 or later version
Update to V1.3 or later version
Patch: Update to V3.0.0 or later version
Update to V3.0.0 or later version
Patch: Update to V5.10.0 or later version
Update to V5.10.0 or later version
Patch: Update to V2.17.0 or later version
Update to V2.17.0 or later version
Patch: Update to V3.2 or later version
Update to V3.2 or later version
Patch: Update to V8.2 or later version
Update to V8.2 or later version
Patch: Update to V6.6.0 or later version
Update to V6.6.0 or later version
Patch: Update to V4.1.9 or later version
Update to V4.1.9 or later version
Patch: Update to V3.0.0 or later version
Update to V3.0.0 or later version
Patch: Update to V4.3.11 or later version
Update to V4.3.11 or later version
Patch: Update to V1.0 SP2 Update 4 or later version
Update to V1.0 SP2 Update 4 or later version
Mitigation: Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Acces
Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Access-Request packets from RADIUS client devices that support it
Patch: Update to V4.3.11 or later version
Update to V4.3.11 or later version
Patch: Update to V3.2 or later version
Update to V3.2 or later version
Patch: Update to V5.10.0 or later version
Update to V5.10.0 or later version
Patch: Update to V1.3 or later version
Update to V1.3 or later version
Patch: Update to V4.6 or later version
Update to V4.6 or later version
Patch: Update to V2.17.0 or later version
Update to V2.17.0 or later version
Mitigation: Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via m
Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via management network or a dedicated VLAN)
Patch: Update to V5.6 or later version
Update to V5.6 or later version
Patch: Update to V1.0 SP2 Update 4 or later version
Update to V1.0 SP2 Update 4 or later version
Patch: Update to V5.10.0 or later version
Update to V5.10.0 or later version
Patch: Update to V3.2 or later version
Update to V3.2 or later version
Patch: Update to FOX61x R18, then enable the RADIUS Message-Authenticator option in both the FOX61x and RAD
Update to FOX61x R18, then enable the RADIUS Message-Authenticator option in both the FOX61x and RADIUS Server configurations. Refer to the Technical User Documentation at https://publisher.hitachienergy.com/preview?DocumentID=1KHW029042&LanguageCode=en&DocumentPartId=R18&Action=launch.
Mitigation: Enable the RADIUS Message-Authenticator option in both the FOX61x and RADIUS Server configurations.
Enable the RADIUS Message-Authenticator option in both the FOX61x and RADIUS Server configurations. Refer to the Technical User Documentation at https://publisher.hitachienergy.com/preview?DocumentID=1KHW029042&LanguageCode=en&DocumentPartId=R18&Action=launch.
Mitigation: If the upgrade is not possible, apply general mitigation factors with segmentation of FOX management
If the upgrade is not possible, apply general mitigation factors with segmentation of FOX management traffic to minimize the risk.
Mitigation: For more information, see the associated Hitachi Energy cybersecurity advisory 8DBD000225 Radius MD5
For more information, see the associated Hitachi Energy cybersecurity advisory 8DBD000225 Radius MD5 Vulnerability in Hitachi Energy FOX61x product at https://publisher.hitachienergy.com/preview?DocumentID=8DBD000225&LanguageCode=en or https://publisher.hitachienergy.com/preview?DocumentID=8DBD000225-CSAF&LanguageCode=en&DocumentPartId=&Action=Launch .
Patch: Update to XMC20 R18 and then enable the RADIUS Message-Authenticator option in both the XMC20 and RA
Update to XMC20 R18 and then enable the RADIUS Message-Authenticator option in both the XMC20 and RADIUS server configurations. Refer to the Technical User Documentation at https://publisher.hitachienergy.com/preview?DocumentID=1KHW029001&LanguageCode=en&DocumentPartId=R18&Action=launch.
Mitigation: Hitachi Energy recommends implementing security practices and firewall configurations to help protec
Hitachi Energy recommends implementing security practices and firewall configurations to help protect process control networks from external attacks. Such practices include ensuring that process control systems are physically protected from unauthorized access, have no direct Internet connections, and are separated from other networks by a firewall system that minimizes exposed ports, and any additional ports should be evaluated on a case-by-case basis. Process control systems should not be used for web browsing, instant messaging, or email. Portable computers and removable storage media should be thoroughly scanned for malware before being connected to a control system. Organizations should enforce proper password policies and procedures.
Mitigation: Enable the RADIUS Message-Authenticator option in both the XMC20 and RADIUS server configurations. R
Enable the RADIUS Message-Authenticator option in both the XMC20 and RADIUS server configurations. Refer to the Technical User Documentation at https://publisher.hitachienergy.com/preview?DocumentID=1KHW029001&LanguageCode=en&DocumentPartId=R18&Action=launch.
Mitigation: If the upgrade is not possible, apply general mitigation factors with segmentation of FOX management
If the upgrade is not possible, apply general mitigation factors with segmentation of FOX management traffic to minimize the risk.
Mitigation: For more information, see the associated Hitachi Energy cybersecurity advisory 8DBD000233 RADIUS MD5
For more information, see the associated Hitachi Energy cybersecurity advisory 8DBD000233 RADIUS MD5 Vulnerability in Hitachi Energy XMC20 product available in PDF format here https://publisher.hitachienergy.com/preview?DocumentID=8DBD000233&LanguageCode=en&DocumentPartId=&Action=launch or JSON format here https://publisher.hitachienergy.com/preview?DocumentID=8DBD000233-CSAF&LanguageCode=en&DocumentPartId=&Action=Launch.
Mitigation: For more information, see the associated Hitachi Energy PSIRT security advisory 8DBD000230 RADIUS vu
For more information, see the associated Hitachi Energy PSIRT security advisory 8DBD000230 RADIUS vulnerability in Hitachi Energy AFS, AFR and AFF series products.
Mitigation: All affected products: Set the RADIUS configuration to default which enables the RADIUS server messa
All affected products: Set the RADIUS configuration to default which enables the RADIUS server message authenticator option.
Patch: AFR 677, AFS 650, AFS 655, AFS 670, AFS 675, AFS 677: Command to enable Message Authenticator option
AFR 677, AFS 650, AFS 655, AFS 670, AFS 675, AFS 677: Command to enable Message Authenticator option: For AFS65x, AFS67x, AFR67x CLI: radius server msgauth MIB: hmAgentRadiusServerMsgAuth
Patch: AFF 660, AFF 665, AFS 660-B/C/S, AFS 665-B/S, AFS 670: Command to enable Message Authenticator optio
AFF 660, AFF 665, AFS 660-B/C/S, AFS 665-B/S, AFS 670: Command to enable Message Authenticator option: For AFS66x, AFS670 v2.0, AFF66x CLI: radius server auth modify msgauth MIB: hm2AgentRadiusServerMsgAuth
Mitigation: Hitachi Energy has identified the following recommended immediate actions:
Hitachi Energy has identified the following recommended immediate actions:
Patch: Update to V2.70 or later version
Update to V2.70 or later version
Patch: Update to V2.83 or later version
Update to V2.83 or later version
Patch: Update to V16.51 or later version
Update to V16.51 or later version
Patch: Update to V9.68 or later version
Update to V9.68 or later version
Patch: Update to V10.0 or later version
Update to V10.0 or later version
Patch: Update to V9.68 or later version
Update to V9.68 or later version
Mitigation: Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via m
Restrict access to the networks where RADIUS messages are exchanged (e.g., send RADIUS traffic via management network or a dedicated VLAN)
Patch: Update to V2.50 or later version
Update to V2.50 or later version
Patch: Update to V10.0 or later version
Update to V10.0 or later version
Mitigation: Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Acces
Configure the RADIUS server to require the presence of a Message-Authenticator attribute in all Access-Request packets from RADIUS client devices that support it
Patch: Update to V6.20 or later version
Update to V6.20 or later version
Patch: Update to V8.90 or later V8.xx version
Update to V8.90 or later V8.xx version
Patch: Update to V9.83 or later version
Update to V9.83 or later version
Patch: Update to V10.0 or later version
Update to V10.0 or later version
Patch: Update to V2.20.0 or later version
Update to V2.20.0 or later version
Patch: Update Fortigate NGFW to V7.4.7. Contact customer support to receive patch and update information
Update Fortigate NGFW to V7.4.7. Contact customer support to receive patch and update information
Patch: Update Fortigate NGFW to V7.4.7. Contact customer support to receive patch and update information
Update Fortigate NGFW to V7.4.7. Contact customer support to receive patch and update information
Patch: The problem is corrected in the following product version: ABB Protection and control IED manager P
The problem is corrected in the following product version: ABB Protection and control IED manager PCM600 version 2.14. ABB recommends that customers apply the update at earliest convenience. Note: RE_630 protection relays are not compatible with PCM600 version 2.14. When using earlier PCM600 versions with RE_630, the known vulnerability must be mitigated through system-level defenses. For mitigation guidance, refer to the General Security Recommendations.
Patch: The problem is corrected in the following product version: ABB Protection and control IED manager P
The problem is corrected in the following product version: ABB Protection and control IED manager PCM600 version 2.14. ABB recommends that customers apply the update at earliest convenience. Note: RE_630 protection relays are not compatible with PCM600 version 2.14. When using earlier PCM600 versions with RE_630, the known vulnerability must be mitigated through system-level defenses. For mitigation guidance, refer to the General Security Recommendations.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000108.
For more information, see Hitachi Energy advisory 8DBD000108.
Mitigation: Process control systems should not be used for internet browsing, instant messaging, or receiving em
Process control systems should not be used for internet browsing, instant messaging, or receiving emails.
Mitigation: Hitachi Energy is developing PROMOD IV version 11.5, which will contain a patch to resolve the vulne
Hitachi Energy is developing PROMOD IV version 11.5, which will contain a patch to resolve the vulnerability.
Mitigation: Separate process control systems from other networks using a firewall system with the minimal number
Separate process control systems from other networks using a firewall system with the minimal number of ports open.
Mitigation: PROMOD IV should be deployed inside the enterprise's demilitarized zone (DMZ) network.
PROMOD IV should be deployed inside the enterprise's demilitarized zone (DMZ) network.
Mitigation: Actbar2.ocx is no longer used by PROMOD IV. Users are encouraged to remove Actbar2.ocx.
Actbar2.ocx is no longer used by PROMOD IV. Users are encouraged to remove Actbar2.ocx.
Mitigation: Users should follow the hardening guidelines published by The Center for Internet Security (CIS) to
Users should follow the hardening guidelines published by The Center for Internet Security (CIS) to protect the host operating system.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: 1756-HIST2G/A (discontinued): Update to series B v5.104 or C 7.100 or later
1756-HIST2G/A (discontinued): Update to series B v5.104 or C 7.100 or later
Mitigation: Users should see the Rockwell Automation security advisory for more information.
Users should see the Rockwell Automation security advisory for more information.
Mitigation: GuardLogix 5580 controllers: Update to V32.016 or later
GuardLogix 5580 controllers: Update to V32.016 or later
Mitigation: For 1732E, upgrade to the latest firmware to disable the web server.
For 1732E, upgrade to the latest firmware to disable the web server.
Mitigation: ControlLogix 5580 controllers: Update to V32.016 or later
ControlLogix 5580 controllers: Update to V32.016 or later
Mitigation: 1756-HIST1G/A (discontinued): Update to series B v5.104 or C 7.100 or later
1756-HIST1G/A (discontinued): Update to series B v5.104 or C 7.100 or later
Mitigation: Compact GuardLogix 5380 controllers: Update to V32.016 or later
Compact GuardLogix 5380 controllers: Update to V32.016 or later
Mitigation: CompactLogix 5480: Update to V32.016 or later
CompactLogix 5480: Update to V32.016 or later
Mitigation: 1756-EN2TP/A: Update to 11.002 or later
1756-EN2TP/A: Update to 11.002 or later
Mitigation: 1756-HIST2G/B: Update to 5.104 or later
1756-HIST2G/B: Update to 5.104 or later
Mitigation: CompactLogix 5380 controllers: Update to V32.016 or later
CompactLogix 5380 controllers: Update to V32.016 or later
Mitigation: 5069-AEN2TR (discontinued): Migrate to the 5069-AENTR.
5069-AEN2TR (discontinued): Migrate to the 5069-AENTR.
Mitigation: 1756-EN2TR/C: Update to 11.002 or later
1756-EN2TR/C: Update to 11.002 or later
Mitigation: Configure firewalls to disallow network communication through HTTP/Port 80.
Configure firewalls to disallow network communication through HTTP/Port 80.
Mitigation: 1756-EN2T/D: Update to 11.002 or later
1756-EN2T/D: Update to 11.002 or later
Mitigation: Disable the web server if possible. Review the corresponding product user manual for instructions, w
Disable the web server if possible. Review the corresponding product user manual for instructions, which can be found in the Rockwell Automation literature library.
Mitigation: See the Rockwell Automation Knowledgebase article, Security Best Practices, for more recommendations
See the Rockwell Automation Knowledgebase article, Security Best Practices, for more recommendations to maintain security posture of an environment
Mitigation: 1756-EN2F/C: Update to 11.002 or later
1756-EN2F/C: Update to 11.002 or later
Mitigation: 1756-EN2F/C: Update to 11.002 or later
1756-EN2F/C: Update to 11.002 or later
Mitigation: 1769-AENTR: Update to 1.003 or later
1769-AENTR: Update to 1.003 or later
Patch: eSOMS: version 6.1.4
eSOMS: version 6.1.4
Mitigation: Recommended security practices and firewall configurations can help protect an organization network
Recommended security practices and firewall configurations can help protect an organization network from attacks that originate from outside the network. Such practices include ensuring critical systems are physically protected from direct access by unauthorized personnel, have no direct connections to the Internet, and are separated from other networks by means of a firewall that has a minimal number of ports exposed, and others that must be evaluated case by case. Critical systems should not be used for Internet surfing, instant messaging, or receiving e-mails. Portable computers and removable storage media should be carefully scanned for viruses before they are connected to a control system.
Patch: eSOMS: version 6.0.4.2.2
eSOMS: version 6.0.4.2.2
Patch: eSOMS: version 6.3
eSOMS: version 6.3
Mitigation: For additional information and support, contact a product provider or Hitachi ABB Power Grids servic
For additional information and support, contact a product provider or Hitachi ABB Power Grids service organization. For contact information, see Hitachi ABB Power Grids contact-centers.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000195.
For more information, see Hitachi Energy advisory 8DBD000195.
Mitigation: Hitachi Energy recommends applying the following mitigations where available:
Hitachi Energy recommends applying the following mitigations where available:
Mitigation: Update to version 9.6.3.13 or 9.6.4.1
Update to version 9.6.3.13 or 9.6.4.1
Patch: Update to V3.2 or later version
Update to V3.2 or later version
Patch: See Section Additional Information.
See Section Additional Information.
Patch: Update to V3.2 or later version
Update to V3.2 or later version
Patch: Update to 2.2.3.4 version or latest
Update to 2.2.3.4 version or latest
Patch: Update to 2.2.4.3 version or latest
Update to 2.2.4.3 version or latest
Mitigation: Apply General Mitigation Factors
Apply General Mitigation Factors
Patch: Update to 2.2.1.7 version or latest
Update to 2.2.1.7 version or latest
Patch: Update to 2.2.2.5 version or latest
Update to 2.2.2.5 version or latest
Patch: Configure Asset Suite 9 with a different authentication method other than SSO.
Configure Asset Suite 9 with a different authentication method other than SSO.
Mitigation: Hitachi Energy recommends applying one the following mitigation actions until a fix has been deliver
Hitachi Energy recommends applying one the following mitigation actions until a fix has been delivered in a patch:
Patch: Configure Asset Suite security to disallow holder actions to be taken on behalf of other employees b
Configure Asset Suite security to disallow holder actions to be taken on behalf of other employees by removing authorization for the following security events to all users: T214ACT, T214RLS, and T214CLR.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000172
For more information, see Hitachi Energy advisory 8DBD000172
Mitigation: Set Equipment Tag Out preference 'C/O HOLDER PSWD' to 'N'.
Set Equipment Tag Out preference 'C/O HOLDER PSWD' to 'N'.
Patch: The table will be updated in case vulnerable products become known.
The table will be updated in case vulnerable products become known.
Patch: Update to V3.3.0 or later version
Update to V3.3.0 or later version
Mitigation: Temporary mitigation exists at the expense of pkexec’s capabilities. By removing SUID permissions, t
Temporary mitigation exists at the expense of pkexec’s capabilities. By removing SUID permissions, the program cannot run processes as root. However, any processes that rely on it for normal operation will be affected - SUID permission can be removed with chmod, as follows: chmod 0755 /usr/bin/pkexec
Patch: Update to V2.0 or later version
Update to V2.0 or later version
Mitigation: Restrict system access to authorized personnel and follow a least privilege approach
Restrict system access to authorized personnel and follow a least privilege approach
Mitigation: Temporary mitigation exists at the expense of pkexec’s capabilities. By removing SUID permissions, t
Temporary mitigation exists at the expense of pkexec’s capabilities. By removing SUID permissions, the program cannot run processes as root. However, any processes that rely on it for normal operation will be affected - SUID permission can be removed with chmod, as follows: chmod 0755 /usr/bin/pkexec
Patch: Update to V3.3.0 or later version
Update to V3.3.0 or later version
Mitigation: Restrict system access to authorized personnel and follow a least privilege approach
Restrict system access to authorized personnel and follow a least privilege approach
Patch: Update to V2.0 or later version
Update to V2.0 or later version
Patch: Update to V7.2 or later version
Update to V7.2 or later version
Patch: For FCP 1.1.0 - 1.3.0, FCP 2.1.0 - 2.3.0, FCP 3.0.0 - 3.12.0: Users should apply mitigations listed
For FCP 1.1.0 - 1.3.0, FCP 2.1.0 - 2.3.0, FCP 3.0.0 - 3.12.0: Users should apply mitigations listed in this advisory and in the mitigation section of Hitachi Energy advisory 8DBD000104.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses connecting to
Portable computers and removable storage media should be carefully scanned for viruses connecting to a control system
Patch: A remediated version FCP 3.14.0 and 4.0.0 is planned. For update or upgrades, users should contact H
A remediated version FCP 3.14.0 and 4.0.0 is planned. For update or upgrades, users should contact Hitachi Energy.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.
Mitigation: Separate process control systems from other networks using firewall system that has a minimal number
Separate process control systems from other networks using firewall system that has a minimal number of ports open.
Mitigation: For more information, see Hitachi Energy advisory 8DBD000104.
For more information, see Hitachi Energy advisory 8DBD000104.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Portable computers and removable storage media should be carefully scanned for viruses before connec
Portable computers and removable storage media should be carefully scanned for viruses before connecting to a control system.
Mitigation: For more information, see Hitachi security advisory 8DBD000101
For more information, see Hitachi security advisory 8DBD000101
Mitigation: Separate process control systems from other networks using a firewall system with only the necessary
Separate process control systems from other networks using a firewall system with only the necessary ports open.
Patch: A remediated version of GWS 3.2.0.0 is planned. For updates or upgrades, contact Hitachi Energy.
A remediated version of GWS 3.2.0.0 is planned. For updates or upgrades, contact Hitachi Energy.
Patch: GWS 2.0.0.0 and earlier, GWS 2.1.0.0, GWS 2.2.0.0, GWS 2.3.0.0, GWS 2.4.0.0,GWS 3.0.0.0, GWS 3.1.0.0
GWS 2.0.0.0 and earlier, GWS 2.1.0.0, GWS 2.2.0.0, GWS 2.3.0.0, GWS 2.4.0.0,GWS 3.0.0.0, GWS 3.1.0.0: Apply the mitigation factors as described in this advisory and in the mitigation section of Hitachi Energy advisory 8DBD000101.
Mitigation: Physically protect process control systems from unauthorized direct access.
Physically protect process control systems from unauthorized direct access.
Mitigation: Process control systems should not be used for internet surfing, instant messaging, or receiving ema
Process control systems should not be used for internet surfing, instant messaging, or receiving emails.

// References