ZeroHour

CVE-2023-4518

CVSS 3.1
7.5 high
EPSS
<1%p51
Published
()
Modified
Description

A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed by the IED caused a reboot of the device. In order for an attacker to exploit the vulnerability, goose receiving blocks need to be configured.

Vendors
hitachienergy
Products
relion 670 firmware, relion 650 firmware, relion sam600-io firmware
Weakness
CWE-1284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.