Vendor
Multiple Critical Vulnerabilities in Hitachi Energy FACTS Control Platform
2 TTPs 5 CVEsHitachi Energy FACTS Control Platform (FCP) units equipped with the GWS component are affected by multiple critical vulnerabilities, including path traversal and authentication bypass, potentially leading to unauthorized system access or modification.
Multiple Vulnerabilities in Hitachi Energy RTU500
1 TTP 5 CVEsHitachi Energy RTU500 devices are impacted by multiple vulnerabilities that allow attackers to induce Denial-of-Service, exfiltrate authentication credentials, and bypass security controls.
Hitachi Energy PROMOD V Insecure HTTP Transmission Vulnerability (CVE-2026-10763)
2 TTPs 1 CVEHitachi Energy PROMOD V versions 1.0.10 and prior are affected by CVE-2026-10763, an insecure HTTP transmission vulnerability that allows attackers to intercept or manipulate sensitive data in transit, potentially leading to credential theft, session hijacking, or unauthorized access, impacting the energy sector globally.
CISA ICS Security Advisories Address Vulnerabilities in Multiple Vendor Products
2 rulesCISA published ICS advisories addressing vulnerabilities in products from ABB, Hitachi Energy, Kieback & Peter, ScadaBR, Siemens, and ZKTeco, recommending mitigations and updates.
Hitachi Energy GMS600 Vulnerable to Bleichenbacher Attack via CVE-2022-4304
2 rules 1 TTP 1 CVEHitachi Energy GMS600 versions 1.3.0 and 1.3.1 are affected by CVE-2022-4304, a vulnerability in the OpenSSL RSA Decryption implementation; an attacker could exploit this timing-based side channel to recover plaintext across a network in a Bleichenbacher-style attack by sending trial messages to the server and recording processing times, eventually decrypting application data.