CVE-2023-5767

A vulnerability exists in the webserver that affects the 
RTU500 series product versions listed below. A malicious 
actor could perform cross-site scripting on the webserver 
due to an RDT language file being improperly sanitized.


Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6 MEDIUM
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:L
Hitachi EnergyCNA
6 MEDIUM
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:L
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 26%
VendorProductVersion
hitachienergyrtu520_firmware
12.0.1 ≤
𝑥
≤ 12.0.14
hitachienergyrtu520_firmware
12.2.1 ≤
𝑥
≤ 12.2.11
hitachienergyrtu520_firmware
12.4.1 ≤
𝑥
≤ 12.4.11
hitachienergyrtu520_firmware
12.6.1 ≤
𝑥
≤ 12.6.9
hitachienergyrtu520_firmware
12.7.1 ≤
𝑥
≤ 12.7.6
hitachienergyrtu520_firmware
13.2.1 ≤
𝑥
≤ 13.2.6
hitachienergyrtu520_firmware
13.4.1 ≤
𝑥
≤ 13.4.3
hitachienergyrtu530_firmware
12.0.1 ≤
𝑥
≤ 12.0.14
hitachienergyrtu530_firmware
12.2.1 ≤
𝑥
≤ 12.2.11
hitachienergyrtu530_firmware
12.4.1 ≤
𝑥
≤ 12.4.11
hitachienergyrtu530_firmware
12.6.1 ≤
𝑥
≤ 12.6.9
hitachienergyrtu530_firmware
12.7.1 ≤
𝑥
≤ 12.7.6
hitachienergyrtu530_firmware
13.2.1 ≤
𝑥
≤ 13.2.6
hitachienergyrtu530_firmware
13.4.1 ≤
𝑥
≤ 13.4.3
hitachienergyrtu540_firmware
12.0.1 ≤
𝑥
≤ 12.0.14
hitachienergyrtu540_firmware
12.2.1 ≤
𝑥
≤ 12.2.11
hitachienergyrtu540_firmware
12.4.1 ≤
𝑥
≤ 12.4.11
hitachienergyrtu540_firmware
12.6.1 ≤
𝑥
≤ 12.6.9
hitachienergyrtu540_firmware
12.7.1 ≤
𝑥
≤ 12.7.6
hitachienergyrtu540_firmware
13.2.1 ≤
𝑥
≤ 13.2.6
hitachienergyrtu540_firmware
13.4.1 ≤
𝑥
≤ 13.4.3
hitachienergyrtu560_firmware
12.0.1 ≤
𝑥
≤ 12.0.14
hitachienergyrtu560_firmware
12.2.1 ≤
𝑥
≤ 12.2.11
hitachienergyrtu560_firmware
12.4.1 ≤
𝑥
≤ 12.4.11
hitachienergyrtu560_firmware
12.6.1 ≤
𝑥
≤ 12.6.9
hitachienergyrtu560_firmware
12.7.1 ≤
𝑥
≤ 12.7.6
hitachienergyrtu560_firmware
13.2.1 ≤
𝑥
≤ 13.2.6
hitachienergyrtu560_firmware
13.4.1 ≤
𝑥
≤ 13.4.3
𝑥
= Vulnerable software versions