Security Advisory

CVE-2023-4518

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-01 14:18:47
Last updated 2024-09-23 12:21:46
Assigner Hitachi Energy
State PUBLISHED

Description

A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be configured.