Back to Feed
VulnerabilitiesMar 3, 2026

Hitachi Energy RTU500 Product

Hitachi Energy has disclosed four vulnerabilities affecting RTU500 product firmware versions 12.7.1 through 13.8.1, including privilege escalation, denial of service, and stack overflow issues in IEC 60870-5-104 and IEC61850 protocol implementations. The vulnerabilities can result in unauthorized access to user management information and device outages, with patches available through firmware updates to versions 12.7.8, 13.7.8, or 13.8.2.

Summary

Hitachi Energy has disclosed four vulnerabilities affecting RTU500 product firmware versions 12.7.1 through 13.8.1, including privilege escalation, denial of service, and stack overflow issues in IEC 60870-5-104 and IEC61850 protocol implementations. The vulnerabilities can result in unauthorized access to user management information and device outages, with patches available through firmware updates to versions 12.7.8, 13.7.8, or 13.8.2.

Indicators of Compromise

  • cve — CVE-2026-1772
  • cve — CVE-2026-1773
  • cve — CVE-2024-8176
  • cve — CVE-2025-59375