First published: Thu Dec 14 2023(Updated: )
A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious actor could perform cross-site scripting on the webserver due to user input being improperly sanitized.
Credit: cybersecurity@hitachienergy.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Any of | ||
Hitachienergy Rtu520 Firmware | >=12.0.1<=12.0.14 | |
Hitachienergy Rtu520 Firmware | >=12.2.1<=12.2.11 | |
Hitachienergy Rtu520 Firmware | >=12.4.1<=12.4.11 | |
Hitachienergy Rtu520 Firmware | >=12.6.1<=12.6.9 | |
Hitachienergy Rtu520 Firmware | >=12.7.1<=12.7.6 | |
Hitachienergy Rtu520 Firmware | >=13.2.1<=13.2.6 | |
Hitachienergy Rtu520 Firmware | >=13.4.1<=13.4.3 | |
Hitachienergy Rtu520 | ||
All of | ||
Any of | ||
Hitachienergy Rtu530 Firmware | >=12.0.1<=12.0.14 | |
Hitachienergy Rtu530 Firmware | >=12.2.1<=12.2.11 | |
Hitachienergy Rtu530 Firmware | >=12.4.1<=12.4.11 | |
Hitachienergy Rtu530 Firmware | >=12.6.1<=12.6.9 | |
Hitachienergy Rtu530 Firmware | >=12.7.1<=12.7.6 | |
Hitachienergy Rtu530 Firmware | >=13.2.1<=13.2.6 | |
Hitachienergy Rtu530 Firmware | >=13.4.1<=13.4.3 | |
Hitachienergy Rtu530 | ||
All of | ||
Any of | ||
Hitachienergy Rtu540 Firmware | >=12.0.1<=12.0.14 | |
Hitachienergy Rtu540 Firmware | >=12.2.1<=12.2.11 | |
Hitachienergy Rtu540 Firmware | >=12.4.1<=12.4.11 | |
Hitachienergy Rtu540 Firmware | >=12.6.1<=12.6.9 | |
Hitachienergy Rtu540 Firmware | >=12.7.1<=12.7.6 | |
Hitachienergy Rtu540 Firmware | >=13.2.1<=13.2.6 | |
Hitachienergy Rtu540 Firmware | >=13.4.1<=13.4.3 | |
Hitachienergy Rtu540 | ||
All of | ||
Any of | ||
Hitachienergy Rtu560 Firmware | >=12.0.1<=12.0.14 | |
Hitachienergy Rtu560 Firmware | >=12.2.1<=12.2.11 | |
Hitachienergy Rtu560 Firmware | >=12.4.1<=12.4.11 | |
Hitachienergy Rtu560 Firmware | >=12.6.1<=12.6.9 | |
Hitachienergy Rtu560 Firmware | >=12.7.1<=12.7.6 | |
Hitachienergy Rtu560 Firmware | >=13.2.1<=13.2.6 | |
Hitachienergy Rtu560 Firmware | >=13.4.1<=13.4.3 | |
Hitachienergy Rtu560 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-5769 has been classified as a moderate severity vulnerability due to the potential for cross-site scripting attacks.
To fix CVE-2023-5769, ensure that user input is properly sanitized on the affected webserver.
CVE-2023-5769 affects the Hitachienergy RTU500 series products including firmware versions of RTU520, RTU530, RTU540, and RTU560.
Yes, CVE-2023-5769 can be exploited remotely by a malicious actor via the affected webserver.
Exploiting CVE-2023-5769 may allow attackers to execute arbitrary scripts in the context of the user's browser.