Your review has been sent successfully

Hitachi Energy Alert

2630
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

24 April, 2022

● High

2022-4709

Energy

Description:

Hitachi Energy has released a security update to address several vulnerabilities in the following product:

  • SYS600: Versions 10.1.1 and prior (OpenSSL Vulnerability)
  • SYS600: Versions 9.4 FP1 through 10.2.1 (Node.js vulnerabilities)
  • SYS600: Versions 10.0.0 through 10.2.1 (PostgreSQL vulnerabilities)
Threats:


Attacker could exploit these vulnerabilities by doing the following:

  • Execute arbitrary code
  • Integer overflow
  • Improper Input Validation
Best practice and Recommendations:

The CERT team encourages users to review Hitachi Energy security advisory and apply the necessary update:

https://search.abb.com/library/Download.aspx?DocumentID=8DBD000075&LanguageCode=en&DocumentPartId=&Action=Launch

Last updated at 24 April, 2022

Rate the content

rate-icon
up icon