CVE Feed

    Dashboard / CVE / CVE-2022-4608

    CVE-2022-4608

    A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be exploited, if the HCI 60870-5-104 is configured with support for IEC 62351-3. After session resumption interval is expired an RTU500 initiated update of session parameters causes an unexpected restart due to a stack overflow.

    Published:Jul 26, 2023
    Last Modified:Mar 5, 2025
    EPS:Jul 26, 2023
    EPSS Score:0.00052
    CVSS Score:7.5

    Affected Products

    Vendor
    Hitachienergy
    Product
    Rtu500
    Vendor
    Hitachienergy
    Product
    Rtu500 Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High