Hitachi Energy’s RTU500 series NULL Pointer Deference (CVE-2024-10037)
Discription

A vulnerability exists in the RTU500 web server com- ponent that can cause a denial of service to the RTU500 CMU application if a specially crafted mes- sage sequence is executed on a WebSocket connec- tion. An attacker must be properly authenticated and the test mode function of RTU500 must be enabled to ex- ploit this vulnerability. The affected CMU will automatically recover itself if an attacker successfully exploits this vulnerability. This plugin only works with Tenable.ot. Please visit https://www.tenable.com/products/tenable-ot for more…Read More
References
Back to Main