Vulnerabilities > Hitachienergy > High

DATE CVE VULNERABILITY TITLE RISK
2019-11-27 CVE-2019-18247 Improper Input Validation vulnerability in Hitachienergy Relion 650 Firmware and Relion 670 Firmware
An attacker may use a specially crafted message to force Relion 650 series (versions 1.3.0.5 and prior) or Relion 670 series (versions 1.2.3.18, 2.0.0.11, 2.1.0.1 and prior) to reboot, which could cause a denial of service.
network
low complexity
hitachienergy CWE-20
7.5
2019-01-16 CVE-2018-20720 Improper Input Validation vulnerability in Hitachienergy Relion 630 Firmware 1.1.0/1.2.0/1.3.0
ABB Relion 630 devices 1.1 before 1.1.0.C0, 1.2 before 1.2.0.B3, and 1.3 before 1.3.0.A6 allow remote attackers to cause a denial of service (reboot) via a reboot command in an SPA message.
network
low complexity
hitachienergy CWE-20
7.5
2018-02-21 CVE-2018-1168 Incorrect Permission Assignment for Critical Resource vulnerability in Hitachienergy Sys600 Firmware
This vulnerability allows local attackers to escalate privileges on vulnerable installations of ABB MicroSCADA 9.3 with FP 1-2-3.
local
low complexity
hitachienergy CWE-732
7.8
2017-12-20 CVE-2017-16731 Insufficiently Protected Credentials vulnerability in Hitachienergy Ellipse 8.3.0/8.9.0
An Unprotected Transport of Credentials issue was discovered in ABB Ellipse 8.3 through Ellipse 8.9 released prior to December 2017 (including Ellipse Select).
low complexity
hitachienergy CWE-522
8.8