Lucene search

K

SAM600-IO Security Vulnerabilities

cve
cve

CVE-2022-3864

A vulnerability exists in the Relion update package signature validation. A tampered update package could cause the IED to restart. After restart the device is back to normal operation. An attacker could exploit the vulnerability by first gaining access to the system with security privileges and...

4.5CVSS

4.6AI Score

0.0004EPSS

2024-01-04 10:15 AM
16
cve
cve

CVE-2023-4518

A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be...

7.5CVSS

7.4AI Score

0.0005EPSS

2023-12-01 03:15 PM
11
cve
cve

CVE-2022-3353

A vulnerability exists in the IEC 61850 communication stack that affects multiple Hitachi Energy products. An attacker could exploit the vulnerability by using a specially crafted message sequence, to force the IEC 61850 MMS-server communication stack, to stop accepting new MMS-client...

7.5CVSS

7.3AI Score

0.005EPSS

2023-02-21 02:15 PM
25
cve
cve

CVE-2022-2513

A vulnerability exists in the Intelligent Electronic Device (IED) Connectivity Package (ConnPack) credential storage function in Hitachi Energy’s PCM600 product included in the versions listed below, where IEDs credentials are stored in a cleartext format in the PCM600 database and logs files. An.....

7.1CVSS

5.3AI Score

0.0004EPSS

2022-11-22 11:15 AM
50
4
cve
cve

CVE-2021-35534

Insufficient security control vulnerability in internal database access mechanism of Hitachi Energy Relion 670/650/SAM600-IO, Relion 650, GMS600, PWC600 allows attacker who successfully exploited this vulnerability, of which the product does not sufficiently restrict access to an internal database....

7.2CVSS

6.9AI Score

0.002EPSS

2021-11-18 05:15 PM
33
4
cve
cve

CVE-2021-35535

Insecure Boot Image vulnerability in Hitachi Energy Relion Relion 670/650/SAM600-IO series allows an attacker who manages to get access to the front network port and to cause a reboot sequences of the device may exploit the vulnerability, where there is a tiny time gap during the booting process...

8.1CVSS

7.8AI Score

0.002EPSS

2021-11-18 04:15 PM
36
cve
cve

CVE-2021-27196

Improper Input Validation vulnerability in Hitachi ABB Power Grids Relion 670 Series, Relion 670/650 Series, Relion 670/650/SAM600-IO, Relion 650, REB500, RTU500 Series, FOX615 (TEGO1), MSM, GMS600, PWC600 allows an attacker with access to the IEC 61850 network with knowledge of how to reproduce...

7.5CVSS

7.4AI Score

0.009EPSS

2021-06-14 10:15 PM
47
2