Security Advisory

CVE-2024-2617

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-30 12:57:37
Last updated 2026-03-04 12:02:50
Assigner Hitachi Energy
State PUBLISHED

Description

A vulnerability exists in the RTU500 that allows for authenticated and authorized users to bypass secure update, if secure update feature was not enabled on all CMUs of a RTU500. If a malicious actor successfully exploits this vulnerability, they could use it to update the RTU500 with unsigned firmware.