← Back

CVE-2023-5767

nvd nist
Published: Dec 4, 2023Modified: Nov 21, 2024

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious actor could perform cross-site scripting on the webserver due to an RDT language file being improperly sanitized.

Affected (28)

4 products
Rtu520 Firmware
Rtu530 Firmware
Rtu540 Firmware
Rtu560 Firmware
Configuration A
7 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Hitachienergy
From 12.0.1 to 12.0.14
From 12.2.1 to 12.2.11
From 12.4.1 to 12.4.11
From 12.6.1 to 12.6.9
From 12.7.1 to 12.7.6
From 13.2.1 to 13.2.6
From 13.4.1 to 13.4.3
Running on/withPlatform Versions
Hitachienergy
Rtu520
All versions
Configuration B
7 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Hitachienergy
From 12.0.1 to 12.0.14
From 12.2.1 to 12.2.11
From 12.4.1 to 12.4.11
From 12.6.1 to 12.6.9
From 12.7.1 to 12.7.6
From 13.2.1 to 13.2.6
From 13.4.1 to 13.4.3
Running on/withPlatform Versions
Hitachienergy
Rtu530
All versions
Configuration C
7 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Hitachienergy
From 12.0.1 to 12.0.14
From 12.2.1 to 12.2.11
From 12.4.1 to 12.4.11
From 12.6.1 to 12.6.9
From 12.7.1 to 12.7.6
From 13.2.1 to 13.2.6
From 13.4.1 to 13.4.3
Running on/withPlatform Versions
Hitachienergy
Rtu540
All versions
Configuration D
7 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Hitachienergy
From 12.0.1 to 12.0.14
From 12.2.1 to 12.2.11
From 12.4.1 to 12.4.11
From 12.6.1 to 12.6.9
From 12.7.1 to 12.7.6
From 13.2.1 to 13.2.6
From 13.4.1 to 13.4.3
Running on/withPlatform Versions
Hitachienergy
Rtu560
All versions

References (2)

Timeline

No history available yet.