CVE-2026-8067: Medium severity ABB RTU500 vulnerability
Published Sep 29, 2026
·Updated
An improper authorization vulnerability in the end-of-life versions of RTU500’s web application allows an authenticated user to trigger the RTU500 to reboot through the reset endpoint. Successful exploitation could cause temporary device unavailability and disruption of its intended operation.
Affected Software
1 affected component
ABB RTU500
Event History
Sep 29, 2026
CVE Published
via MITRE·09:33 AM
Data Sourced
via MITRE·09:33 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
An attacker must be authenticated to the RTU500 web application. The provided information does not indicate that unauthenticated users can trigger the reset endpoint.
2
What is the practical impact of exploitation?
An authenticated attacker can reboot the RTU500 through its reset endpoint. This causes temporary device unavailability and may disrupt the device’s intended operation.