Description

A vulnerability exists in the RTU500 that allows for authenticated and authorized users to bypass secure update, if secure update feature was not enabled on all CMUs of a RTU500. If a malicious actor successfully exploits this vulnerability, they could use it to update the RTU500 with unsigned firmware.

INFO

Published Date :

2024-04-30T12:57:37.143Z

Last Modified :

2026-03-04T12:02:50.897Z

Source :

Hitachi Energy
AFFECTED PRODUCTS

The following products are affected by CVE-2024-2617 vulnerability.

Vendors Products
Hitachienergy
  • Rtu500 Firmware
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-2617.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact