CyberRota Analysis
AI-GeneratedA critical directory traversal vulnerability in the file upload feature of Hitachi Energy RTU500 devices allows unauthenticated attackers to write or overwrite arbitrary files on the device's file system. Exploitation could lead to unauthorized modifications of device data or disrupt normal operations, posing significant risks to system integrity and availability. Organizations using RTU500 devices should prioritize immediate remediation to mitigate potential impacts.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A directory traversal vulnerability in the file upload functionality of Hitachi Energy RTU500 end-of-life versions allows an unauthenticated attacker to write or overwrite arbitrary files on the device file system. Depending on the files affected, successful exploitation could result in unauthorized modification of device data or disruption of the device’s intended operation.