CVE-2023-5768

A vulnerability exists in the HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. 
Incomplete or wrong received APDU frame layout may 
cause blocking on link layer. Error reason was an endless blocking when reading incoming frames on link layer 
with wrong length information of APDU or delayed reception 
of data octets.


Only communication link of affected HCI IEC 60870-5-104 
is blocked. If attack sequence stops the communication to 
the previously attacked link gets normal again.

Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.9 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Hitachi EnergyCNA
5.9 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 31%
VendorProductVersion
hitachienergyrtu520_firmware
12.0.1 ≤
𝑥
≤ 12.0.14
hitachienergyrtu520_firmware
12.2.1 ≤
𝑥
≤ 12.2.11
hitachienergyrtu520_firmware
12.4.1 ≤
𝑥
≤ 12.4.11
hitachienergyrtu520_firmware
12.6.1 ≤
𝑥
≤ 12.6.9
hitachienergyrtu520_firmware
12.7.1 ≤
𝑥
≤ 12.7.6
hitachienergyrtu520_firmware
13.2.1 ≤
𝑥
≤ 13.2.6
hitachienergyrtu520_firmware
13.4.1 ≤
𝑥
≤ 13.4.3
hitachienergyrtu530_firmware
12.0.1 ≤
𝑥
≤ 12.0.14
hitachienergyrtu530_firmware
12.2.1 ≤
𝑥
≤ 12.2.11
hitachienergyrtu530_firmware
12.4.1 ≤
𝑥
≤ 12.4.11
hitachienergyrtu530_firmware
12.6.1 ≤
𝑥
≤ 12.6.9
hitachienergyrtu530_firmware
12.7.1 ≤
𝑥
≤ 12.7.6
hitachienergyrtu530_firmware
13.2.1 ≤
𝑥
≤ 13.2.6
hitachienergyrtu530_firmware
13.4.1 ≤
𝑥
≤ 13.4.3
hitachienergyrtu540_firmware
12.0.1 ≤
𝑥
≤ 12.0.14
hitachienergyrtu540_firmware
12.2.1 ≤
𝑥
≤ 12.2.11
hitachienergyrtu540_firmware
12.4.1 ≤
𝑥
≤ 12.4.11
hitachienergyrtu540_firmware
12.6.1 ≤
𝑥
≤ 12.6.9
hitachienergyrtu540_firmware
12.7.1 ≤
𝑥
≤ 12.7.6
hitachienergyrtu540_firmware
13.2.1 ≤
𝑥
≤ 13.2.6
hitachienergyrtu540_firmware
13.4.1 ≤
𝑥
≤ 13.4.3
hitachienergyrtu560_firmware
12.0.1 ≤
𝑥
≤ 12.0.14
hitachienergyrtu560_firmware
12.2.1 ≤
𝑥
≤ 12.2.11
hitachienergyrtu560_firmware
12.4.1 ≤
𝑥
≤ 12.4.11
hitachienergyrtu560_firmware
12.6.1 ≤
𝑥
≤ 12.6.9
hitachienergyrtu560_firmware
12.7.1 ≤
𝑥
≤ 12.7.6
hitachienergyrtu560_firmware
13.2.1 ≤
𝑥
≤ 13.2.6
hitachienergyrtu560_firmware
13.4.1 ≤
𝑥
≤ 13.4.3
𝑥
= Vulnerable software versions