Hitachi Energy Vulnerabilities and Affected Products
Vulnerabilities associated with SDM600.
Products
Clear product- FOXMAN-UN15 vulnerabilities
- UNEM15 vulnerabilities
- MicroSCADA X SYS60014 vulnerabilities
- RTU500 series CMU firmware9 vulnerabilities
- RTU5007 vulnerabilities
- SDM6007 vulnerabilities
- MicroSCADA Pro SYS6005 vulnerabilities
- FOX61x4 vulnerabilities
- RTU500 series4 vulnerabilities
- Asset Suite3 vulnerabilities
- eSOMS3 vulnerabilities
- MicroSCADA SYS6003 vulnerabilities
- MSM3 vulnerabilities
- TRMTracker3 vulnerabilities
- TropOS 4th Gen3 vulnerabilities
- TXpert Hub CoreTec 4 version3 vulnerabilities
- GMS6002 vulnerabilities
- MACH System Software2 vulnerabilities
- NSD570 Teleprotection Equipment2 vulnerabilities
- PCM6002 vulnerabilities
- PWC6002 vulnerabilities
- Relion 670 Series2 vulnerabilities
- Relion 670/650 and SAM600-IO2 vulnerabilities
- Relion 670/650 Series2 vulnerabilities
- Relion 670/650/SAM600-IO2 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-2378HIGH | A vulnerability exists in the web-authentication component of the SDM600. If exploited an attacker could escalate privileges on af-fected installations. CWE-863Apr 30, 2024 | CVSS8.0v3.1 | EPSS0.216% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-2377HIGH | A vulnerability exists in the too permissive HTTP response header web server settings of the SDM600. An attacker can take advantage of this and possibly carry out privileged actions and access sensitive information. CWE-346Apr 30, 2024 | CVSS7.6v3.1 | EPSS0.205% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-3685HIGH | SDM600 software privilege levelA vulnerability exists in the SDM600 software. The software operates at a privilege level that is higher than the minimum level required. An attacker who successfully exploits this vulnerability can escalate privileges. This issue affects: All SDM600 versions prior to version 1.3.0. List of CPEs: * cpe:2.3:a:hitachienergy:sdm600:1.0:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sdm600:1.1:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sdm600:1.2:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sd… CWE-285Mar 28, 2023 | CVSS7.5v3.1 | EPSS0.345% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-3686MEDIUM | SDM600 API permission checkA vulnerability exists in a SDM600 endpoint. An attacker could exploit this vulnerability by running multiple parallel requests, the SDM600 web services become busy rendering the application unresponsive. This issue affects: All SDM600 versions prior to version 1.2 FP3 HF4 (Build Nr. 1.2.23000.291) List of CPEs: * cpe:2.3:a:hitachienergy:sdm600:1.0:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sdm600:1.1:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sdm600:1.2:*:*:*:*:*:*:* * cpe:2.3:a:hit… CWE-285Mar 28, 2023 | CVSS4.8v3.1 | EPSS1.44% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-3684HIGH | SDM600 endpoint vulnerabilityA vulnerability exists in a SDM600 endpoint. An attacker could exploit this vulnerability by running multiple parallel requests, the SDM600 web services become busy rendering the application unresponsive. This issue affects: All SDM600 versions prior to version 1.2 FP3 HF4 (Build Nr. 1.2.23000.291) List of CPEs: * cpe:2.3:a:hitachienergy:sdm600:1.0:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sdm600:1.1:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sdm600:1.2:*:*:*:*:*:*:* * cpe:2.3:a:hit… CWE-404Mar 28, 2023 | CVSS7.5v3.1 | EPSS0.616% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-3683HIGH | SDM600 API web services authorization validationA vulnerability exists in the SDM600 API web services authorization validation implementation. An attacker who successfully exploits the vulnerability could read data directly from a data store that is not restricted, or insufficiently protected, having access to sensitive data. This issue affects: All SDM600 versions prior to version 1.2 FP3 HF4 (Build Nr. 1.2.23000.291) List of CPEs: * cpe:2.3:a:hitachienergy:sdm600:1.0:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sdm600:1.1:*:*:*:*… CWE-285Mar 28, 2023 | CVSS7.7v3.1 | EPSS0.484% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-3682CRITICAL | SDM600 file permission validationA vulnerability exists in the SDM600 file permission validation. An attacker could exploit the vulnerability by gaining access to the system and uploading a specially crafted message to the system node, which could result in Arbitrary code Executing. This issue affects: All SDM600 versions prior to version 1.2 FP3 HF4 (Build Nr. 1.2.23000.291) List of CPEs: * cpe:2.3:a:hitachienergy:sdm600:1.0:*:*:*:*:*:*:* * cpe:2.3:a:hitachienergy:sdm600:1.1:*:*:*:*:*:*:* * cpe:2.3:a:hitachi… CWE-434Mar 28, 2023 | CVSS9.9v3.1 | EPSS0.781% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |