CVE-2022-29492: A vulnerability exists in the handling of a malformed IEC 104 TCP packet. Upon receiving a malformed IEC 104 TCP packet, the malformed packet is dropped, however the TCP connection is left open. This may cause a denial-of-service if the affected conne ...
Improper Input Validation vulnerability in the handling of a malformed IEC 104 TCP packet in the Hitachi Energy MicroSCADA X SYS600, MicroSCADA Pro SYS600. Upon receiving a malformed IEC 104 TCP packet, the malformed packet is dropped, however the TCP connection is left open. This may cause a denial-of-service if the affected connection is left open. This issue affects: Hitachi Energy MicroSCADA Pro SYS600 version 9.4 FP2 Hotfix 4 and earlier versions Hitachi Energy MicroSCADA X SYS600 version 10 to version 10.3.1. cpe:2.3:a:hitachienergy:microscadaprosys600:9.0::::::: cpe:2.3:a:hitachienergy:microscadaprosys600:9.1::::::: cpe:2.3:a:hitachienergy:microscadaprosys600:9.2::::::: cpe:2.3:a:hitachienergy:microscadaprosys600:9.3::::::: cpe:2.3:a:hitachienergy:microscadaprosys600:9.4::::::: cpe:2.3:a:hitachienergy:microscadaxsys600:10::::::: cpe:2.3:a:hitachienergy:microscadaxsys600:10.1::::::: cpe:2.3:a:hitachienergy:microscadaxsys600:10.1.1::::::: cpe:2.3:a:hitachienergy:microscadaxsys600:10.2::::::: cpe:2.3:a:hitachienergy:microscadaxsys600:10.2.1::::::: cpe:2.3:a:hitachienergy:microscadaxsys600:10.3::::::: cpe:2.3:a:hitachienergy:microscadaxsys600:10.3.1:::::::
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-29492?
CVE-2022-29492 is an Improper Input Validation vulnerability in the handling of a malformed IEC 104 TCP packet in the Hitachi Energy MicroSCADA X SYS600 and MicroSCADA Pro SYS600.
How does CVE-2022-29492 affect the Hitachi Energy MicroSCADA X SYS600 and MicroSCADA Pro SYS600?
CVE-2022-29492 allows a denial of service (DoS) attack by causing a TCP connection to remain open when a malformed IEC 104 TCP packet is received.
What is the severity level of CVE-2022-29492?
CVE-2022-29492 has a severity level of 7.5 (high).
How can I mitigate CVE-2022-29492?
To mitigate CVE-2022-29492, it is recommended to apply the latest security patches or updates provided by Hitachi Energy for MicroSCADA X SYS600 and MicroSCADA Pro SYS600.
Where can I find more information about CVE-2022-29492?
More information about CVE-2022-29492 can be found at the following reference: [link](https://search.abb.com/library/Download.aspx?DocumentID=8DBD000106&LanguageCode=en&DocumentPartId=&Action=Launch).