A vulnerability exists in the RTU500 web server component that can cause a denial of service to the RTU500 CMU application if a specially crafted message sequence is executed on a WebSocket connection.
An attacker must be properly authenticated and the test mode function of RTU500 must be enabled to exploit this vulnerability.
The affected CMU will automatically recover itself if an attacker successfully exploits this vulnerability.
Metrics
Affected Vendors & Products
References
History
Tue, 25 Mar 2025 12:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability exists in the RTU500 web server component that can cause a denial of service to the RTU500 CMU application if a specially crafted message sequence is executed on a WebSocket connection. An attacker must be properly authenticated and the test mode function of RTU500 must be enabled to exploit this vulnerability. The affected CMU will automatically recover itself if an attacker successfully exploits this vulnerability. | |
Weaknesses | CWE-476 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Hitachi Energy
Published: 2025-03-25T12:22:07.815Z
Updated: 2025-03-25T12:22:07.815Z
Reserved: 2024-10-16T15:15:10.639Z
Link: CVE-2024-10037

No data.

Status : Received
Published: 2025-03-25T13:15:39.673
Modified: 2025-03-25T13:15:39.673
Link: CVE-2024-10037

No data.