| CVE ID | CVSS Score | Severity | Description |
|---|---|---|---|
| CVE-2024-45492 | 6.5 | medium |
CVE-2024-45492. A vulnerability has been identified in libexpat library used in the IEC 61850 client and server components of the RTU500 product series. An authenticated and authorized malicious user could load a crafted XML input which leads to an integer overflow potentially causing RTU500 to reboot.
|
| CVE-2024-28757 | 6.5 | medium |
CVE-2024-28757. A vulnerability has been identified in libexpat library used in the IEC 61850 client and server components of the RTU500 product series. An authenticated and authorized malicious user could load a crafted XML input which may lead to a memory mismanagement potentially causing RTU500 to reboot.
|
| CVE-2024-45491 | 6.5 | medium |
CVE-2024-45491. A vulnerability has been identified in libexpat library used in the IEC 61850 client and server components of the RTU500 product series. An authenticated and authorized malicious user could load a crafted XML input which may lead to heap corruption potentially causing RTU500 to reboot.
|
| CVE-2024-45490 | 6.5 | medium |
CVE-2024-45490. A vulnerability has been identified in the libexpat library used in IEC 61850 client and server components of the RTU500 product series. An authenticated and authorized malicious user could load a crafted XML input which may lead to memory mismanagement potentially causing RTU500 to reboot.
|
| CVE-2023-2953 | 7.5 | high |
CVE-2023-2953. A vulnerability has been identified in the openLDAP library used in Central Account Management (CAM) client. This issue can lead to a Denial of Service (DoS) condition when a specially crafted request may cause a null pointer to deference, resulting in affected CMU to automatically recovering itself by rebooting.
|
| CVE-2025-39203 | 4.3 | medium |
CVE-2025-39203. A vulnerability exists in the IEC 61850 protocol of the RTU500 product series. An IEC 61850-8 crafted message content from a device (e.g. an IED) or remote system can cause a Denial of Service (DoS) resulting in disconnection of the device to the RTU500 until next reboot.
|
| CVE-2025-6021 | 6.5 | medium |
CVE-2025-6021. A vulnerability exists in libxml library used by RTU500 Web server functionality. An authenticated and authorized malicious user could send a crafted XML message which may lead to buffer overflow potentially causing RTU500 to reboot.
|
| Vendor | Product | Asset Type | Purdue Level | Firmware |
|---|---|---|---|---|
| Hitachi Energy | Unknown | rtu |
L1
|
12.2 |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | plc |
L1
|
-- |
| Siemens | Unknown | plc |
L1
|
-- |
| Siemens | Unknown | plc |
L1
|
-- |
| Siemens | Unknown | plc |
L1
|
-- |
| Hitachi Energy | Unknown | rtu |
L1
|
13.6.1 |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Siemens | Unknown | network_device | -- | -- |
| Hitachi Energy | Unknown | scada_server |
L2
|
-- |
| Hitachi Energy | Unknown | scada_server |
L2
|
-- |